CVE-2026-76183 | Apache Tomcat up to 11.0.25 WebSocket endpoint improper authentication

SecurityVulns

A vulnerability described as critical has been identified in Apache Tomcat up to 7.0.109/8.5.100/9.0.121/10.1.59/11.0.25. Affected is an unknown function of the component WebSocket endpoint. The manipulation results in improper authentication.

This vulnerability is cataloged as CVE-2026-76183. The attack may be launched remotely. There is no exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More