CVE-2026-34486 - Apache Tomcat Missing Encryption of Sensitive Data Vulnerability
Brief
Apache Tomcat contains a missing encryption of sensitive data vulnerability that allows the bypass of the EncryptInterceptor. This vulnerability can be chained with CVE‑2025‑24813.
