Skip to content

[FP]: old tomcat CVE incorrectly reported for latest version #8283

@githubuserVenkat

Description

@githubuserVenkat

Package URl

pkg:maven/org.apache.tomcat/[email protected]

CPE

cpe:2.3:a:apache_tomcat:apache_tomcat:9.0.106:::::::*

CVE

CVE-2020-8022

ODC Integration

None

ODC Version

12.2.0

Description

As per NVD CVE-2020-8022 has been fixed in 9.0.35,however it is still reported even in the tomcat version 9.0.110

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions