Root has patched CVE-2023-24998 in the io.root.org.apache.tomcat.embed:tomcat-embed-core package for Root:Maven. Multiple fixed versions available.
{ "source": "Root", "severity": "HIGH", "distro_version": "", "distro": "maven" }
[ "9.0.39-root.io.2", "9.0.39-root.io.3", "9.0.63-root.io.1", "9.0.39-root.io.4" ]
"9.0.39"
4.0
"https://api.root.io/external/osv/ROOT-APP-MAVEN-CVE-2023-24998.json"
"root.io.4"
true
[ "9.0.39-aikido.4" ]
"9.0.39-aikido.4"
1.0
""
"1.5"
2.0
"root.io.2"
[ "1.5-root.io.1", "1.5-root.io.2" ]
[ "1.5-aikido.2" ]
"1.5-aikido.2"