Web Servers Family for Nessus

IDNameSeverity
334516Apache Tomcat 9.0.13 < 9.0.117 Insertion of Sensitive Information Vulnerability
high
334515Apache Tomcat 9.0.116 < 9.0.117 Missing Encryption of Sensitive Data Vulnerability (CVE-2026-34486)
high
334514Apache Tomcat 9.0.40 < 9.0.117 Improper Encoding or Escaping of Output Vulnerability (CVE-2026-34483)
high
333386IBM WebSphere eXtreme Scale 8.6.2.0 < 8.6.2.2 (7282872)
high
333310SimpleHelp 5.5.x < 5.5.16 OIDC Authentication Bypass
critical
333047IBM WebSphere Application Server 8.5.x < 8.5.5.31 / 9.x < 9.0.5.29 Privilege Escalation (7281631)
critical
332717OpenSSL 3.6.0 < 3.6.4 Vulnerability
high
332247IBM WebSphere Application Server 8.5.x < 8.5.5.31 / 9.x < 9.0.5.29 XSS (7281641)
critical
332244IBM WebSphere Application Server 8.5.x < 8.5.5.31 / 9.x < 9.0.5.29 (7281628)
critical
332232OpenSSL 4.0.0 < 4.0.2 Vulnerability
high
330488IBM WebSphere Application Server 8.5.x < 8.5.5.31 / 9.x < 9.0.5.29 / Liberty 17.0.0.3 < 26.0.0.8 (7281625)
high
330487IBM WebSphere Application Server 8.5.x < 8.5.5.31 / 9.x < 9.0.5.29 (7281649)
high
330442Apache Tomcat 9.0.89 < 9.0.121
high
330425Apache Tomcat 11.0.0.M20 < 11.0.25
high
330424Apache Tomcat 10.1.24 < 10.1.58
high
330305Oracle APEX (CVE-2026-60156) (July 2026 CPU)
medium
330304Oracle APEX (CVE-2026-54285) (July 2026 CPU)
medium
330303Oracle APEX (CVE-2026-60630) (July 2026 CPU)
medium
330084nginx 1.30.x < 1.30.4 / 1.31.2 < 1.31.3 Multiple Vulnerabilities
critical
329320Grafana Labs 12.4.0 < 12.4.4 / 13.0.0 < 13.0.2 Multiple Vulnerabilities
medium
329319Grafana Labs < 11.6.15 / 12.2.0 < 12.2.9 / 12.3.0 < 12.3.7 / 12.4.0 < 12.4.4 / 13.0.0 < 13.0.2 Multiple Vulnerabilities
medium
329200Oracle HTTP Server (July 2026 CPU)
critical
329199Oracle HTTP Server (July 2026 CPU)
critical
328876IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.8 DoS (7280126)
high
328875IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.8 DoS (7280695)
high
327605SAP NetWeaver AS Java XSS in Configuration Wizard (3748227)
high
327604SAP NetWeaver AS ABAP BSP XSS (3754659)
medium
327603SAP NetWeaver AS ABAP Memory Corruption (3747367)
critical
327602SAP NetWeaver Enterprise Portal XSS (3746678)
medium
327109IBM WebSphere Application Server 8.5.x < 8.5.5.31 / 9.x < 9.0.5.29 / Liberty 17.0.0.3 < 26.0.0.8 (7280131)
high
326732Apache Tomcat 11.0.0.M1 < 11.0.24 multiple vulnerabilities
critical
326731Apache Tomcat 10.1.0.M1 < 10.1.57 multiple vulnerabilities
critical
326730Apache Tomcat 9.0.13 < 9.0.120 multiple vulnerabilities
critical
325543IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.8 DoS (7279284)
high
325539IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.29 XSRF (7279256)
medium
324627IBM WebSphere eXtreme Scale 8.6.1.0 < 8.6.1.6 (7278745)
medium
324011IBM WebSphere Application Server 8.5.x < 8.5.5.31 / 9.x < 9.0.5.29 / Liberty 17.0.0.3 < 26.0.0.8 (7278576)
high
324010IBM WebSphere Application Server 8.5.x < 8.5.5.31 / 9.x < 9.0.5.29 (7278590)
high
324009IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.7 (7278572)
critical
324008IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.7 (7278580)
critical
323714Apache Tomcat 9.0.0.M1 < 9.0.119 multiple vulnerabilities
critical
323713Apache Tomcat 11.0.0.M1 < 11.0.23 multiple vulnerabilities
critical
323712Apache Tomcat 10.1.0.M1 < 10.1.56 multiple vulnerabilities
critical
323711IBM WebSphere eXtreme Scale 8.6.1.0 < 8.6.1.6 (7278346)
medium
323710Apache Tomcat 9.0.0.M1 < 9.0.102
high
323709Apache Tomcat 11.0.0.M1 < 11.0.5
high
323708Apache Tomcat 10.1.0.M1 < 10.1.39
high
322276IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.7 (7277536)
high
322275IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.29 XSS (7277546)
critical
322274IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.29 RCE (7277544)
high