A devastating new remote code execution (RCE) vulnerability, CVE-2025-24813, is now actively exploited in the wild. Attackers need just one PUT API request to take over vulnerable Apache Tomcat servers. The exploit, originally published by a Chinese forum user iSee857, is already available online: CVE-2025-24813 PoC by iSee857. Exploit Breakdown: How a Simple PUT Request […]
First seen on securityboulevard.com
Jump to article: securityboulevard.com/2025/03/one-put-request-to-own-tomcat-cve-2025-24813-rce-is-in-the-wild/