AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2013-2071

LOW · CVSS 2.6 EPSS 6.50%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2013-06-01 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2013-2071
Severity
LOW
CVSS
2.6
EPSS
6.50%
Apache Java

Original Filing — NVD Description

java/org/apache/catalina/core/AsyncContextImpl.java in Apache Tomcat 7.x before 7.0.40 does not properly handle the throwing of a RuntimeException in an AsyncListener in an application, which allows context-dependent attackers to obtain sensitive request information intended for other applications in opportunistic circumstances via an application that records the requests that it processes.