Stateward All advisories →
critical
exploited in the wild
CVE-2020-1938
Maven · org.apache.tomcat.embed:tomcat-embed-core
Summary Improper Privilege Management in Tomcat
Severity critical EPSS 99.3% (p100) Also known as GHSA-c9hw-wf7x-jp9j, BIT-tomcat-2020-1938 Published 2020-06-15
Related advisories CVE-2026-41293 — critical · Maven/org.apache.tomcat.embed:tomcat-embed-coreCVE-2026-43512 — critical · Maven/org.apache.tomcat.embed:tomcat-embed-coreCVE-2026-43515 — critical · Maven/org.apache.tomcat.embed:tomcat-embed-coreCVE-2025-24813 — critical · Maven/org.apache.tomcat.embed:tomcat-embed-coreCVE-2026-41284 — high · Maven/org.apache.tomcat.embed:tomcat-embed-coreCVE-2026-42498 — high · Maven/org.apache.tomcat.embed:tomcat-embed-coreCVE-2026-43513 — high · Maven/org.apache.tomcat.embed:tomcat-embed-coreCVE-2026-34483 — high · Maven/org.apache.tomcat.embed:tomcat-embed-core
Is your project exposed to this? Stateward checks every dependency on every pull request and flags it only if your code actually reaches it.
Check my repo