StackRadar

CVE-2025-31651

Critical

Advisory

Published 28 Apr 2025In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.040
90th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
69
of 17,781 indexed, latest versions
Container images
73
deployed by those charts
Fix available
3 of 4
affected packages

Apache Tomcat: Bypass of rules in Rewrite Valve

Carried by container images the latest versions of 69 of 17,781 indexed charts deploy, on 73 images.

Affected packageAffected versionsFixed inImages
Apache Tomcatbitnami9.0.809.0.1041
tomcatbitnami9.0.80-19.0.1041
tomcat-embed-coremaven8.5.4, 8.5.11, 8.5.14, 8.5.15+31 more9.0.104, 10.1.40, 11.0.672
tomcat-catalinamaven8.5.38, 8.5.82no fix listed2
OSV records
BIT-tomcat-2025-31651GHSA-ff77-26x5-69cr

Charts affected

69 by stars
ChartLatestAffected imagesRadar Score
resource-servicemicroservices-learningVerified publisher1.5.01 of 2See more

resource-service microservices-learning 1.5.0

1 of the 2 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.resource-service:latest13ad9bb170a0
tomcat-embed-core@10.1.13
10.1.40

Open the chart page →

5,129
song-servicemicroservices-learningVerified publisher1.2.01 of 2See more

song-service microservices-learning 1.2.0

1 of the 2 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.song-service:latest2bcdac368b07
tomcat-embed-core@10.1.13
10.1.40

Open the chart page →

4,599
pulsarv2milvus-helm2.7.81 of 4See more

pulsarv2 milvus-helm 2.7.8

1 of the 4 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
apachepulsar/pulsar-manager:v0.1.0b341ef76a852
tomcat-embed-core@8.5.31
no fix listed

Open the chart page →

15,855
myappmyapp-helm-charts0.4.01 of 1See more

myapp myapp-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
adityaprasadpathak/myapp:3.07e3b9777362c
tomcat-embed-core@10.1.25
10.1.40

Open the chart page →

2,141
nacosnacos-yunyeVerified publisher1.0.31 of 1See more

nacos nacos-yunye 1.0.3

1 of the 1 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
nacos/nacos-server:v3.0.130a39cb0c54d
tomcat-embed-core@10.1.39
10.1.40

Open the chart page →

1,783
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
tomcat-catalina@8.5.38
tomcat-embed-core@8.5.38
no fix listed
no fix listed

Open the chart page →

63,223
ves-agentopencord1.0.21 of 1See more

ves-agent opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
opencord/ves-agent:1.0.04187e2a8c918
tomcat-embed-core@8.5.31
no fix listed

Open the chart page →

6,350
fineractopenshift0.1.11 of 4See more

fineract openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
tomcat-embed-core@10.1.39
10.1.40

Open the chart page →

7,792
redhat-springboot-restopenshift0.0.11 of 1See more

redhat-springboot-rest openshift 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
tomcat-embed-core@9.0.83
9.0.104

Open the chart page →

3,063
operatonoperatonVerified publisher1.0.51 of 1See more

operaton operaton 1.0.5

1 of the 1 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
operaton/operaton:1.0.0-beta-4b35867ffe4d8
tomcat-embed-core@10.1.39
10.1.40

Open the chart page →

2,003
seataseataVerified publisher0.1.01 of 1See more

seata seata 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
seataio/seata-server:latest703b5de7f1a6
tomcat-embed-core@9.0.83
9.0.104

Open the chart page →

4,245
seldon-core-oauth-gatewayseldon0.3.11 of 2See more

seldon-core-oauth-gateway seldon 0.3.1

1 of the 2 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
seldonio/apife:0.3.1eea0d3f578ca
tomcat-embed-core@8.5.34
no fix listed

Open the chart page →

8,098
sonarqubestakaterVerified publisher0.10.31 of 2See more

sonarqube stakater 0.10.3

1 of the 2 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
library/sonarqube:6.7.6-community0ae5169e3d0f
tomcat-embed-core@8.5.23
no fix listed

Open the chart page →

11,841
streamastreama1.0.11 of 2See more

streama streama 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
just1not2/streama:1.10.48a2305192dec
tomcat-embed-core@8.5.11
no fix listed

Open the chart page →

8,554
togglr-backendtogglrVerified publisher1.0.01 of 1See more

togglr-backend togglr 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
gdrocha/togglr-backend:1.0.0d5ae64e83d4c
tomcat-embed-core@10.1.15
10.1.40

Open the chart page →

3,221
configservertwomartensVerified publisher0.2.01 of 1See more

configserver twomartens 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
2martens/configserver:latestbf1cdb80239d
tomcat-embed-core@10.1.28
10.1.40

Open the chart page →

2,144
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
tomcat-embed-core@8.5.46
no fix listed

Open the chart page →

9,397
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
tomcat-embed-core@8.5.41
no fix listed

Open the chart page →

5,460
zahori-processzahoriVerified publisher1.0.11 of 1See more

zahori-process zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-31651.

Container imageDigestPackageFixed in
zahoriaut/zahori-process:0.1.13351f8a220ed7
tomcat-embed-core@10.1.10
10.1.40

Open the chart page →

3,480

Container images carrying it

73 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
opencord/ves-agent:1.0.04187e2a8c918
tomcat-embed-core@8.5.31
no fix listed
1
operaton/operaton:1.0.0-beta-4b35867ffe4d8
tomcat-embed-core@10.1.39
10.1.40
1
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
Apache Tomcat@9.0.80
tomcat@9.0.80-1
9.0.104
9.0.104
1
rabeh/apibootspring:1.0941007b6946e
tomcat-embed-core@10.1.16
10.1.40
1
richardchesterwood/k8s-fleetman-api-gateway:release2518f946b9f05
tomcat-embed-core@8.5.11
no fix listed
1
richardchesterwood/k8s-fleetman-position-tracker:release336c43961214c
tomcat-embed-core@8.5.4
no fix listed
1
seataio/seata-server:latest703b5de7f1a6
tomcat-embed-core@9.0.83
9.0.104
1
seldonio/apife:0.2.7ba81b17f00eb
tomcat-embed-core@8.5.34
no fix listed
1
seldonio/apife:0.3.1eea0d3f578ca
tomcat-embed-core@8.5.34
no fix listed
1
seldonio/cluster-manager:0.2.729e362bb1ba2
tomcat-embed-core@8.5.34
no fix listed
1
sysnet4admin/colosseum-agg:logbc25b152d88e
tomcat-embed-core@10.1.34
10.1.40
1
treskon/portrait:DEV-latest88e813f22347
tomcat-embed-core@10.1.33
10.1.40
1
vincentgwzhang/k8sforjava:latesta9139f2cd98f
tomcat-embed-core@10.1.34
10.1.40
1
zahoriaut/zahori-process:0.1.13351f8a220ed7
tomcat-embed-core@10.1.10
10.1.40
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
tomcat-embed-core@10.1.17
10.1.40
1
ghcr.io/it-at-m/zammad-ldap-sync:dev10de22c8cbce
tomcat-embed-core@10.1.34
10.1.40
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
tomcat-embed-core@10.1.33
10.1.40
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
tomcat-embed-core@10.1.33
10.1.40
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
tomcat-embed-core@10.1.16
10.1.40
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
tomcat-embed-core@10.1.18
10.1.40
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
tomcat-embed-core@10.1.18
10.1.40
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
tomcat-embed-core@10.1.18
10.1.40
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
tomcat-embed-core@9.0.83
9.0.104
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.