CVE-2025-55668 | Apache Tomcat up to 9.0.105/10.1.41/11.0.7 session fixiation (Nessus ID 260004 / WID-SEC-2025-1826)
A vulnerability labeled as critical has been found in Apache Tomcat up to 9.0.105/10.1.41/11.0.7. This affects an unknown function. Such manipulation leads to session fixiation. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is referenced as CVE-2025-55668. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.