cancel
Showing results for 
Search instead for 
Did you mean: 

CVE-2025-24813 Tomcat Vulnerability

cmanar-TM
Champ in-the-making
Champ in-the-making

Currently running 7.4.1.3 which is running Tomcat 9.0.87 which is flagged as vulnerable to the CVE-2025-24813 RCE vulnerability.

Has Hyland or the community reviewed Alfresco to determine whether it is vulnerable?

 

https://nvd.nist.gov/vuln/detail/CVE-2025-24813

1 REPLY 1

angelborroy
Community Manager Community Manager
Community Manager

This vulnerability has no impact in Alfresco products when configured with out of the box settings. 

However, users are recommended to upgrade to version 11.0.3, 10.1.35 or 9.0.98, which fixes the issue.

Hyland Developer Evangelist