THREATOPS
THREAT OPSCVEs › CVE-2026-34486

CVE-2026-34486 — Apache Tomcat Missing Encryption of Sensitive Data Vulnerability

CISA KEVExploited: confirmedApache

Apache Tomcat contains a missing encryption of sensitive data vulnerability that allows the bypass of the EncryptInterceptor.

Vulnerability details

Related reporting