Apache Tomcat CVE-2018-8034 Certificate Validation Bypass Vulnerability

description-logoDescription

The host name verification when using TLS with the WebSocket client was missing. It is now enabled by default.

affected-products-logoAffected Applications

Apache Tomcat

Version Updates

Date Version Status Detail
2021-12-07 2.00079
Modified
Apache Tomcat
2020-02-21 2.00048
New
Apache Tomcat
2019-02-05 1.00034
Modified
Apache Tomcat
2019-01-03 1.00033
Modified
Apache Tomcat