[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2018-1304":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T02:55:30.529Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":18,"aliases":19,"duplicate_of":9,"upstream":21,"downstream":22,"duplicates":57,"related":58,"reserved_at":9,"published_at":64,"modified_at":65,"state":66,"summary":67,"references_raw":76,"kevs":368,"epss":369,"epss_history":372,"metrics":639,"affected":652},"CVE-2018-1304","The URL pattern of \"\" (the empty string) which exactly maps to the context root was not correctly handled in Apache Tomcat 9.0.0.M1 to 9.0.4, 8.5.0 to 8.5.27, 8.0.0.RC1 to 8.0.49 and 7.0.0 to 7.0.84 when used as part of a security constraint definition. This caused the constraint to be ignored. It was, therefore, possible for unauthorised users to gain access to web application resources that should have been protected. Only security constraints with a URL pattern of the empty string were affected.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":9,"likelihood_of_exploit":9,"capec":17},"NVD-CWE-NOINFO","Insufficient Information","NVD uses this CWE ID when there is insufficient information to assign a specific CWE.","placeholder","NVD-Reserved",[],[],[20],"GHSA-6rxj-58jh-436r",[],[23,25,27,29,31,33,35,37,39,41,43,45,47,49,51,53,55],{"_key":24},"SUSE-SU-2018:0817-1",{"_key":26},"SUSE-SU-2018:1847-1",{"_key":28},"SUSE-SU-2018:3261-1",{"_key":30},"SUSE-SU-2018:3388-1",{"_key":32},"DLA-1301-1",{"_key":34},"DLA-1400-1",{"_key":36},"DLA-1450-1",{"_key":38},"DSA-4281-1",{"_key":40},"MGASA-2018-0149",{"_key":42},"USN-3665-1",{"_key":44},"RHSA-2018:0466",{"_key":46},"RHSA-2018:1448",{"_key":48},"RHSA-2018:1449",{"_key":50},"RHSA-2018:1450",{"_key":52},"RHSA-2018:1451",{"_key":54},"RHSA-2019:2205",{"_key":56},"UBUNTU-CVE-2018-1304",[],[59,60,61,62,63],{"_key":24},{"_key":26},{"_key":28},{"_key":30},{"_key":40},"2018-02-28T20:00:00.000Z","2024-09-17T01:35:47.135Z","Modified",{"cisa_kev":68,"cisa_ransomware":68,"cisa_vendor":9,"epss_severity":69,"epss_score":70,"severity":71,"severity_score":72,"severity_version":73,"severity_source":74,"severity_vector":75,"severity_status":66},false,"low",0.0304,"medium",5.9,"v3.0","nvd","CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",[77,87,93,99,103,107,111,116,121,125,129,134,139,143,147,154,158,162,166,170,174,178,182,186,190,194,198,202,206,210,214,218,222,226,230,234,238,242,246,250,254,259,263,267,271,275,279,283,287,291,295,299,303,307,311,315,319,323,327,331,336,340,344,348,352,356,360,364],{"url":78,"sources":79,"tags":82},"https://access.redhat.com/errata/RHSA-2018:1448",[80,74,81],"cve.org","osv_maven",[83,84,85,86],"Vendor Advisory","X Refsource REDHAT","Third Party Advisory","WEB",{"url":88,"sources":89,"tags":90},"https://security.netapp.com/advisory/ntap-20180706-0001/",[80,74],[91,92,85],"X Refsource CONFIRM","Patch",{"url":94,"sources":95,"tags":96},"http://www.securityfocus.com/bid/103170",[80,74],[97,98,85],"VDB Entry","X Refsource BID",{"url":100,"sources":101,"tags":102},"http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",[80,74,81],[91,92,85,86],{"url":104,"sources":105,"tags":106},"https://access.redhat.com/errata/RHSA-2018:1449",[80,74,81],[83,84,85,86],{"url":108,"sources":109,"tags":110},"https://access.redhat.com/errata/RHSA-2018:1450",[80,74,81],[83,84,85,86],{"url":112,"sources":113,"tags":114},"https://lists.apache.org/thread.html/b1d7e2425d6fd2cebed40d318f9365b44546077e10949b01b1f8a0fb%40%3Cannounce.tomcat.apache.org%3E",[80,74,81],[115,86],"X Refsource MISC",{"url":117,"sources":118,"tags":119},"https://www.debian.org/security/2018/dsa-4281",[80,74,81],[83,120,85,86],"X Refsource DEBIAN",{"url":122,"sources":123,"tags":124},"https://access.redhat.com/errata/RHSA-2018:2939",[80,74,81],[83,84,85,86],{"url":126,"sources":127,"tags":128},"https://access.redhat.com/errata/RHSA-2018:0465",[80,74,81],[83,84,85,86],{"url":130,"sources":131,"tags":132},"https://usn.ubuntu.com/3665-1/",[80,74],[83,133,85],"X Refsource UBUNTU",{"url":135,"sources":136,"tags":137},"http://www.securitytracker.com/id/1040427",[80,74],[97,138,85],"X Refsource SECTRACK",{"url":140,"sources":141,"tags":142},"https://access.redhat.com/errata/RHSA-2018:1320",[80,74,81],[83,84,85,86],{"url":144,"sources":145,"tags":146},"https://access.redhat.com/errata/RHSA-2018:1451",[80,74,81],[83,84,85,86],{"url":148,"sources":149,"tags":150},"https://lists.debian.org/debian-lts-announce/2018/03/msg00004.html",[80,74,81],[151,152,153,85,86],"Mailing List","X Refsource MLIST","Issue Tracking",{"url":155,"sources":156,"tags":157},"http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",[80,74,81],[91,92,85,86],{"url":159,"sources":160,"tags":161},"https://lists.debian.org/debian-lts-announce/2018/07/msg00044.html",[80,74,81],[151,152,85,86],{"url":163,"sources":164,"tags":165},"https://access.redhat.com/errata/RHSA-2018:0466",[80,74,81],[83,84,85,86],{"url":167,"sources":168,"tags":169},"https://access.redhat.com/errata/RHSA-2018:1447",[80,74,81],[83,84,85,86],{"url":171,"sources":172,"tags":173},"https://lists.debian.org/debian-lts-announce/2018/06/msg00008.html",[80,74,81],[151,152,85,86],{"url":175,"sources":176,"tags":177},"https://lists.apache.org/thread.html/eb6efa8d59c45a7a9eff94c4b925467d3b3fec8ba7697f3daa314b04%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":179,"sources":180,"tags":181},"https://lists.apache.org/thread.html/343558d982879bf88ec20dbf707f8c11255f8e219e81d45c4f8d0551%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":183,"sources":184,"tags":185},"https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3c7eb131457f708%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":187,"sources":188,"tags":189},"https://lists.apache.org/thread.html/5c0e00fd31efc11e147bf99d0f03c00a734447d3b131ab0818644cdb%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":191,"sources":192,"tags":193},"https://lists.apache.org/thread.html/b5e3f51d28cd5d9b1809f56594f2cf63dcd6a90429e16ea9f83bbedc%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":195,"sources":196,"tags":197},"https://lists.apache.org/thread.html/88855876c33f2f9c532ffb75bfee570ccf0b17ffa77493745af9a17a%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":199,"sources":200,"tags":201},"https://lists.apache.org/thread.html/e85e83e9954f169bbb77b44baae5a33d8de878df557bb32b7f793661%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":203,"sources":204,"tags":205},"https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d85f34c1f5c77424%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":207,"sources":208,"tags":209},"https://lists.apache.org/thread.html/1dd0a59c1295cc08ce4c9e7edae5ad2268acc9ba55adcefa0532e5ba%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":211,"sources":212,"tags":213},"https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f988315086931d7%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":215,"sources":216,"tags":217},"https://lists.apache.org/thread.html/6af47120905aa7d8fe12f42e8ff2284fb338ba141d3b77b8c7cb61b3%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":219,"sources":220,"tags":221},"https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html",[80,74,81],[115,92,85,86],{"url":223,"sources":224,"tags":225},"https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html",[80,74,81],[115,86],{"url":227,"sources":228,"tags":229},"https://access.redhat.com/errata/RHSA-2019:2205",[80,74,81],[83,84,86],{"url":231,"sources":232,"tags":233},"https://lists.apache.org/thread.html/r6ccee4e849bc77df0840c7f853f6bd09d426f6741247da2b7429d5d9%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":235,"sources":236,"tags":237},"https://lists.apache.org/thread.html/r3bbb800a816d0a51eccc5a228c58736960a9fffafa581a225834d97d%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":239,"sources":240,"tags":241},"https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855578c3a2cbe5d19c%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":243,"sources":244,"tags":245},"https://lists.apache.org/thread.html/raba0fabaf4d56d4325ab2aca8814f0b30a237ab83d8106b115ee279a%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":247,"sources":248,"tags":249},"https://lists.apache.org/thread.html/r48c1444845fe15a823e1374674bfc297d5008a5453788099ea14caf0%40%3Cdev.tomcat.apache.org%3E",[80,74,81],[151,152,86],{"url":251,"sources":252,"tags":253},"https://www.oracle.com/security-alerts/cpuapr2020.html",[80,74,81],[115,86],{"url":255,"sources":256,"tags":257},"https://nvd.nist.gov/vuln/detail/CVE-2018-1304",[81],[258],"Advisory",{"url":260,"sources":261,"tags":262},"https://github.com/apache/tomcat80/commit/9e700b93e3bf5c605267d20568a964169f9e0b79",[81],[86],{"url":264,"sources":265,"tags":266},"https://github.com/apache/tomcat/commit/723ea6a5bc5e7bc49e5ef84273c3b3c164a6a4fd",[81],[86],{"url":268,"sources":269,"tags":270},"https://github.com/apache/tomcat/commit/5af7c13cff7cc8366c5997418e820989fabb8f48",[81],[86],{"url":272,"sources":273,"tags":274},"https://github.com/apache/tomcat/commit/2d69fde135302e8cff984bb2131ec69f2e396964",[81],[86],{"url":276,"sources":277,"tags":278},"https://lists.apache.org/thread.html/r6ccee4e849bc77df0840c7f853f6bd09d426f6741247da2b7429d5d9@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":280,"sources":281,"tags":282},"https://lists.apache.org/thread.html/r48c1444845fe15a823e1374674bfc297d5008a5453788099ea14caf0@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":284,"sources":285,"tags":286},"https://lists.apache.org/thread.html/r3bbb800a816d0a51eccc5a228c58736960a9fffafa581a225834d97d@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":288,"sources":289,"tags":290},"https://lists.apache.org/thread.html/eb6efa8d59c45a7a9eff94c4b925467d3b3fec8ba7697f3daa314b04@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":292,"sources":293,"tags":294},"https://lists.apache.org/thread.html/e85e83e9954f169bbb77b44baae5a33d8de878df557bb32b7f793661@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":296,"sources":297,"tags":298},"https://lists.apache.org/thread.html/b5e3f51d28cd5d9b1809f56594f2cf63dcd6a90429e16ea9f83bbedc@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":300,"sources":301,"tags":302},"https://lists.apache.org/thread.html/b1d7e2425d6fd2cebed40d318f9365b44546077e10949b01b1f8a0fb@%3Cannounce.tomcat.apache.org%3E",[81],[86],{"url":304,"sources":305,"tags":306},"https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855578c3a2cbe5d19c@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":308,"sources":309,"tags":310},"https://lists.apache.org/thread.html/raba0fabaf4d56d4325ab2aca8814f0b30a237ab83d8106b115ee279a@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":312,"sources":313,"tags":314},"https://security.netapp.com/advisory/ntap-20180706-0001",[81],[86],{"url":316,"sources":317,"tags":318},"https://usn.ubuntu.com/3665-1",[81],[86],{"url":320,"sources":321,"tags":322},"https://web.archive.org/web/20200227102806/http://www.securityfocus.com/bid/103170",[81],[86],{"url":324,"sources":325,"tags":326},"https://web.archive.org/web/20200516074457/http://www.securitytracker.com/id/1040427",[81],[86],{"url":328,"sources":329,"tags":330},"https://github.com/advisories/GHSA-6rxj-58jh-436r",[81],[258],{"url":332,"sources":333,"tags":334},"https://github.com/apache/tomcat",[81],[335],"PACKAGE",{"url":337,"sources":338,"tags":339},"https://lists.apache.org/thread.html/1dd0a59c1295cc08ce4c9e7edae5ad2268acc9ba55adcefa0532e5ba@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":341,"sources":342,"tags":343},"https://lists.apache.org/thread.html/343558d982879bf88ec20dbf707f8c11255f8e219e81d45c4f8d0551@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":345,"sources":346,"tags":347},"https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3c7eb131457f708@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":349,"sources":350,"tags":351},"https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f988315086931d7@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":353,"sources":354,"tags":355},"https://lists.apache.org/thread.html/5c0e00fd31efc11e147bf99d0f03c00a734447d3b131ab0818644cdb@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":357,"sources":358,"tags":359},"https://lists.apache.org/thread.html/6af47120905aa7d8fe12f42e8ff2284fb338ba141d3b77b8c7cb61b3@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":361,"sources":362,"tags":363},"https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d85f34c1f5c77424@%3Cdev.tomcat.apache.org%3E",[81],[86],{"url":365,"sources":366,"tags":367},"https://lists.apache.org/thread.html/88855876c33f2f9c532ffb75bfee570ccf0b17ffa77493745af9a17a@%3Cdev.tomcat.apache.org%3E",[81],[86],[],{"date":370,"score":70,"percentile":371},"2026-06-04",0.86922,[373,377,380,383,386,389,392,395,398,401,404,407,409,412,414,418,421,424,427,430,433,436,439,441,443,446,448,451,455,458,461,464,467,469,472,475,478,481,484,487,490,493,496,499,502,506,509,512,514,517,520,523,526,529,532,535,538,541,544,548,551,554,557,560,563,567,570,573,575,578,581,584,587,590,593,596,598,601,604,607,610,613,616,619,622,625,628,630,632,635],{"date":374,"score":375,"percentile":376},"2025-11-04",0.01722,0.81772,{"date":378,"score":375,"percentile":379},"2025-11-05",0.81773,{"date":381,"score":375,"percentile":382},"2025-11-06",0.81776,{"date":384,"score":375,"percentile":385},"2025-11-07",0.81786,{"date":387,"score":375,"percentile":388},"2025-11-08",0.81793,{"date":390,"score":375,"percentile":391},"2025-11-09",0.8179,{"date":393,"score":375,"percentile":394},"2025-11-10",0.81783,{"date":396,"score":375,"percentile":397},"2025-11-11",0.81791,{"date":399,"score":375,"percentile":400},"2025-11-12",0.81801,{"date":402,"score":375,"percentile":403},"2025-11-13",0.81808,{"date":405,"score":375,"percentile":406},"2025-11-14",0.81813,{"date":408,"score":375,"percentile":403},"2025-11-15",{"date":410,"score":375,"percentile":411},"2025-11-16",0.8181,{"date":413,"score":375,"percentile":403},"2025-11-17",{"date":415,"score":416,"percentile":417},"2025-11-18",0.05826,0.89595,{"date":419,"score":416,"percentile":420},"2025-11-19",0.89599,{"date":422,"score":416,"percentile":423},"2025-11-20",0.89602,{"date":425,"score":375,"percentile":426},"2025-11-21",0.81823,{"date":428,"score":375,"percentile":429},"2025-11-22",0.81827,{"date":431,"score":375,"percentile":432},"2025-11-23",0.81821,{"date":434,"score":375,"percentile":435},"2025-11-24",0.81819,{"date":437,"score":375,"percentile":438},"2025-11-25",0.8182,{"date":440,"score":375,"percentile":432},"2025-11-26",{"date":442,"score":375,"percentile":429},"2025-11-27",{"date":444,"score":375,"percentile":445},"2025-11-28",0.81816,{"date":447,"score":375,"percentile":426},"2025-11-29",{"date":449,"score":375,"percentile":450},"2025-11-30",0.81829,{"date":452,"score":453,"percentile":454},"2025-12-01",0.01044,0.76931,{"date":456,"score":453,"percentile":457},"2025-12-02",0.76942,{"date":459,"score":453,"percentile":460},"2025-12-03",0.76932,{"date":462,"score":375,"percentile":463},"2025-12-04",0.81828,{"date":465,"score":375,"percentile":466},"2025-12-05",0.81834,{"date":468,"score":375,"percentile":466},"2025-12-06",{"date":470,"score":375,"percentile":471},"2025-12-07",0.81832,{"date":473,"score":375,"percentile":474},"2025-12-08",0.81835,{"date":476,"score":375,"percentile":477},"2025-12-09",0.81849,{"date":479,"score":375,"percentile":480},"2025-12-10",0.81877,{"date":482,"score":375,"percentile":483},"2025-12-11",0.81895,{"date":485,"score":375,"percentile":486},"2025-12-12",0.81907,{"date":488,"score":375,"percentile":489},"2025-12-13",0.81906,{"date":491,"score":375,"percentile":492},"2025-12-14",0.81904,{"date":494,"score":375,"percentile":495},"2025-12-15",0.819,{"date":497,"score":375,"percentile":498},"2025-12-16",0.81911,{"date":500,"score":375,"percentile":501},"2025-12-17",0.81917,{"date":503,"score":504,"percentile":505},"2025-12-18",0.03002,0.86143,{"date":507,"score":504,"percentile":508},"2025-12-19",0.86145,{"date":510,"score":504,"percentile":511},"2025-12-20",0.86141,{"date":513,"score":504,"percentile":508},"2025-12-21",{"date":515,"score":504,"percentile":516},"2025-12-22",0.86137,{"date":518,"score":504,"percentile":519},"2025-12-23",0.86142,{"date":521,"score":504,"percentile":522},"2025-12-24",0.86148,{"date":524,"score":504,"percentile":525},"2025-12-25",0.86159,{"date":527,"score":504,"percentile":528},"2025-12-26",0.86163,{"date":530,"score":504,"percentile":531},"2025-12-27",0.86206,{"date":533,"score":504,"percentile":534},"2025-12-28",0.86156,{"date":536,"score":504,"percentile":537},"2025-12-29",0.8615,{"date":539,"score":504,"percentile":540},"2025-12-30",0.86158,{"date":542,"score":504,"percentile":543},"2025-12-31",0.86167,{"date":545,"score":546,"percentile":547},"2026-01-01",0.01855,0.82644,{"date":549,"score":546,"percentile":550},"2026-01-02",0.8264,{"date":552,"score":546,"percentile":553},"2026-01-03",0.82633,{"date":555,"score":504,"percentile":556},"2026-01-04",0.86168,{"date":558,"score":504,"percentile":559},"2026-01-05",0.86165,{"date":561,"score":504,"percentile":562},"2026-01-06",0.86166,{"date":564,"score":565,"percentile":566},"2026-01-07",0.0179,0.82273,{"date":568,"score":565,"percentile":569},"2026-01-08",0.82278,{"date":571,"score":565,"percentile":572},"2026-01-09",0.82279,{"date":574,"score":565,"percentile":572},"2026-01-10",{"date":576,"score":565,"percentile":577},"2026-01-11",0.82276,{"date":579,"score":565,"percentile":580},"2026-01-12",0.82268,{"date":582,"score":565,"percentile":583},"2026-01-13",0.82266,{"date":585,"score":565,"percentile":586},"2026-01-14",0.82285,{"date":588,"score":565,"percentile":589},"2026-01-15",0.82283,{"date":591,"score":565,"percentile":592},"2026-01-16",0.82293,{"date":594,"score":565,"percentile":595},"2026-01-17",0.82296,{"date":597,"score":565,"percentile":592},"2026-01-18",{"date":599,"score":565,"percentile":600},"2026-01-19",0.82289,{"date":602,"score":565,"percentile":603},"2026-01-20",0.82288,{"date":605,"score":565,"percentile":606},"2026-01-21",0.82294,{"date":608,"score":565,"percentile":609},"2026-01-22",0.82302,{"date":611,"score":565,"percentile":612},"2026-01-23",0.82323,{"date":614,"score":565,"percentile":615},"2026-01-24",0.82329,{"date":617,"score":565,"percentile":618},"2026-01-25",0.82322,{"date":620,"score":565,"percentile":621},"2026-01-26",0.8232,{"date":623,"score":565,"percentile":624},"2026-01-27",0.82318,{"date":626,"score":565,"percentile":627},"2026-01-28",0.82321,{"date":629,"score":565,"percentile":618},"2026-01-29",{"date":631,"score":565,"percentile":615},"2026-01-30",{"date":633,"score":565,"percentile":634},"2026-01-31",0.82335,{"date":636,"score":637,"percentile":638},"2026-02-01",0.01116,0.77878,[640,650],{"source":74,"cvss_v2_0":641,"cvss_v3_0":646,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":642,"baseSeverity":9,"vectorString":643,"impactScore":644,"exploitabilityScore":645},4.3,"AV:N/AC:M/Au:N/C:P/I:N/A:N",2.9,8.6,{"baseScore":72,"baseSeverity":647,"vectorString":75,"impactScore":648,"exploitabilityScore":649},"MEDIUM",6,5.6,{"source":81,"cvss_v2_0":9,"cvss_v3_0":651,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":72,"baseSeverity":9,"vectorString":75,"impactScore":648,"exploitabilityScore":649},[653,662,739,753,764,785,790,799,805,813,822,828],{"ecosystem":9,"name":654,"vendor":655,"product":656,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":658},"Apache Tomcat","apache software foundation","apache tomcat","a",[659],{"version":660,"is_range":68,"range_type":80,"version_start":660,"version_start_type":661,"version_end":660,"version_end_type":661,"fixed_in":9},"Apache Tomcat 9.0.0.M1 to 9.0.4, 8.5.0 to 8.5.27, 8.0.0.RC1 to 8.0.49, 7.0.0 to 7.0.84","including",{"ecosystem":9,"name":663,"vendor":9,"product":663,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":664},"Tomcat",[665,671,675,679,683,685,687,689,691,693,695,697,699,701,703,705,707,709,711,713,715,717,719,721,723,725,727,729,731,733,735,737],{"version":666,"is_range":667,"range_type":668,"version_start":669,"version_start_type":661,"version_end":670,"version_end_type":661,"fixed_in":9},"gte7.0.0_lte7.0.84",true,"cpe","7.0.0","7.0.84",{"version":672,"is_range":667,"range_type":668,"version_start":673,"version_start_type":661,"version_end":674,"version_end_type":661,"fixed_in":9},"gte8.0.0_lte8.0.49","8.0.0","8.0.49",{"version":676,"is_range":667,"range_type":668,"version_start":677,"version_start_type":661,"version_end":678,"version_end_type":661,"fixed_in":9},"gte8.5.0_lte8.5.27","8.5.0","8.5.27",{"version":680,"is_range":667,"range_type":668,"version_start":681,"version_start_type":661,"version_end":682,"version_end_type":661,"fixed_in":9},"gte9.0.0_lte9.0.4","9.0.0","9.0.4",{"version":684,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0.0:rc1",{"version":686,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone1",{"version":688,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone10",{"version":690,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone11",{"version":692,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone12",{"version":694,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone13",{"version":696,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone14",{"version":698,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone15",{"version":700,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone16",{"version":702,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone17",{"version":704,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone18",{"version":706,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone19",{"version":708,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone2",{"version":710,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone20",{"version":712,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone21",{"version":714,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone22",{"version":716,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone23",{"version":718,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone24",{"version":720,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone25",{"version":722,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone26",{"version":724,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone27",{"version":726,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone3",{"version":728,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone4",{"version":730,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone5",{"version":732,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone6",{"version":734,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone7",{"version":736,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone8",{"version":738,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0.0:milestone9",{"ecosystem":9,"name":740,"vendor":741,"product":742,"cpe_part":743,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":744},"ubuntu linux","canonical","ubuntu_linux","o",[745,747,749,751],{"version":746,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"14.04",{"version":748,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04",{"version":750,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"17.10",{"version":752,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"ecosystem":9,"name":754,"vendor":755,"product":756,"cpe_part":743,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":757},"debian linux","debian","debian_linux",[758,760,762],{"version":759,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.0",{"version":761,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0",{"version":763,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"ecosystem":765,"name":766,"vendor":767,"product":768,"cpe_part":9,"purl_type":769,"purl_namespace":767,"purl_name":768,"source":9,"versions":770},"Maven","org.apache.tomcat.embed:tomcat-embed-core","org.apache.tomcat.embed","tomcat-embed-core","maven",[771,776,779,782],{"version":772,"is_range":667,"range_type":773,"version_start":681,"version_start_type":661,"version_end":774,"version_end_type":775,"fixed_in":9},"gte9_0_0_lt9_0_5","ecosystem","9.0.5","excluding",{"version":777,"is_range":667,"range_type":773,"version_start":677,"version_start_type":661,"version_end":778,"version_end_type":775,"fixed_in":9},"gte8_5_0_lt8_5_28","8.5.28",{"version":780,"is_range":667,"range_type":773,"version_start":673,"version_start_type":661,"version_end":781,"version_end_type":775,"fixed_in":9},"gte8_0_0_lt8_0_51","8.0.51",{"version":783,"is_range":667,"range_type":773,"version_start":669,"version_start_type":661,"version_end":784,"version_end_type":775,"fixed_in":9},"gte7_0_0_lt7_0_86","7.0.86",{"ecosystem":9,"name":786,"vendor":9,"product":786,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":787},"Fusion Middleware",[788],{"version":789,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.2.1.3.0",{"ecosystem":9,"name":791,"vendor":792,"product":793,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":794},"hospitality guest access","oracle","hospitality_guest_access",[795,797],{"version":796,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"4.2.0",{"version":798,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"4.2.1",{"ecosystem":9,"name":800,"vendor":792,"product":801,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":802},"micros relate crm software","micros_relate_crm_software",[803],{"version":804,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.4",{"ecosystem":9,"name":806,"vendor":792,"product":807,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":808},"secure global desktop","secure_global_desktop",[809,811],{"version":810,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.3",{"version":812,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.4",{"ecosystem":9,"name":814,"vendor":815,"product":816,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":817},"jboss enterprise application platform","redhat","jboss_enterprise_application_platform",[818,820],{"version":819,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6",{"version":821,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.4",{"ecosystem":9,"name":823,"vendor":815,"product":824,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":825},"jboss enterprise web server","jboss_enterprise_web_server",[826],{"version":827,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0.0",{"ecosystem":9,"name":829,"vendor":815,"product":830,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":831},"jboss middleware","jboss_middleware",[832],{"version":833,"is_range":68,"range_type":668,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1"]