CVE-2024-50379General(apache / bootstrap_os)

LOWCVSS 9.8 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability during JSP compilation in Apache Tomcat permits an RCE on case insensitive file systems when the default servlet is enabled for write (non-default configuration). This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.0.97. The following versions were EOL at the time the CVE was created but are known to be affected: 8.5.0 though 8.5.100. Other, older, EOL versions may also be affected. Users are recommended to upgrade to version 11.0.2, 10.1.34 or 9.0.98, which fixes the issue.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-367

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • bootstrap_os
  • hci_compute_node
  • tomcat

Threat summary

  • Public PoC is present in monitored signal
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • General: 2 classified signals
  • Peaked 2d ago at 1 mentions (2026-03-09); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Products
bootstrap_oshci_compute_nodetomcat

1 version affected across 3 products

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-03-09: 1Mentions · 2026-03-13: 1Mentions · 2026-06-29: 1PoC Mentioned / Linked · 2026-03-13: 103-0903-1306-29
Signal classification2 categories
General
266.7%
PoC
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-03-091
General1
2026-03-131
PoC1
2026-06-291
General1
Full discourse3 posts
  • Yash Raikar@Yrctrlsec
    General

    Completed the Tomcat: CVE-2024-50379 room on TryHackMe Sometimes the bug isn’t the code… It’s when the code runs 🏃 https://t.co/FpqFRdxHrG

    Post summary

    The tweet announces completion of a TryHackMe training room about CVE-2024-50379, with no additional technical or exploit details provided.

    0102059
    29 followersView on X
  • ‘BBWriteups’@bbwriteup
    PoC

    "Deep Dive & POC of CVE-2024-50379 Exploit Tomcat Vulnerability (9.8 Severity)" by Vidhi patel #BugBounty #Cybersecurity #Hacking #InfoSec https://infosecwriteups.com/deep-dive-poc-of-cve-2024-50379-exploit-tomcat-vulnerability-9-8-severity-776cfcfcf3ed

    Post summary

    The post announces a deep dive with a proof‑of‑concept for CVE‑2024‑50379, a Tomcat vulnerability rated 9.8 severity, suggesting detailed exploitation steps are provided in the linked article.

    0001082
    504 followersView on X
  • 317ON13_LIRW@ToTo13ru_xakep
    General

    I just completed Tomcat: CVE-2024-50379 room on TryHackMe! Explore and learn about the Tomcat CVE-2024-50379 vulnerability. https://tryhackme.com/room/tomcatcve202450379?utm_campaign=social_share&utm_medium=social&utm_content=room&utm_source=twitter&sharerId=662fb6411f3680a87baf9e1f #tryhackme via @tryhackme

    Post summary

    The post announces completion of a TryHackMe training module focused on CVE‑2024‑50379, with no technical exploitation details or mitigation information provided.

    0000032
CPE platform detail3 entries

3 of 3 entries

PartVendorProductVersionTarget SWTarget HW
Appapachetomcat---
OSnetappbootstrap_os---
HWnetapphci_compute_node---

Explore more