vulnerability

Amazon Linux AMI: CVE-2022-4132: Security patch for tomcat7 (ALAS-2023-1738)

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:C)
Published
2023-04-27
Added
2023-05-04
Modified
2025-05-21

Description

A flaw was found in JSS. A memory leak in JSS requires non-standard configuration but is a low-effort DoS vector if configured that way (repeatedly hitting the login page).

Solution

amazon-linux-upgrade-tomcat7
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.