CVE-2025-31650 | Apache Tomcat up to 9.0.102/10.1.39/11.0.5 HTTP Priority Header resource consumption
A vulnerability was found in Apache Tomcat up to 9.0.102/10.1.39/11.0.5. It has been classified as problematic. Affected is an unknown function of the component HTTP Priority Header Handler. The manipulation leads to resource consumption.
This vulnerability is traded as CVE-2025-31650. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.