I Use This!
High Activity
Analyzed about 7 hours ago. based on code collected 1 day ago.

Project Summary

The Apache Tomcat software is an open source implementation of the Java Servlet, JavaServer Pages, Java Expression Language and Java WebSocket technologies.

Tags

apache http http_server java jsp servlet web web_services

Apache License 2.0
Permitted

Commercial Use

Modify

Distribute

Place Warranty

Sub-License

Private Use

Use Patent Claims

Forbidden

Hold Liable

Use Trademarks

Required

Include Copyright

State Changes

Include License

Include Notice

These details are provided for information only. No information here is legal advice and should not be used as such.

Project Security

Vulnerabilities per Version ( last 10 releases )

Project Vulnerability Report

Security Confidence Index

Poor security track-record
Favorable security track-record

Vulnerability Exposure Index

Many reported vulnerabilities
Few reported vulnerabilities

Did You Know...

  • ...
    65% of companies leverage OSS to speed application development in 2016
  • ...
    by exploring contributors within projects, you can view details on every commit they have made to that project
  • ...
    nearly 1 in 3 companies have no process for identifying, tracking, or remediating known open source vulnerabilities
  • ...
    compare projects before you chose one to use
About Project Security

Languages

Java
82%
XML
9%
XML Schema
6%
10 Other
3%

30 Day Summary

Apr 18 2024 — May 18 2024

12 Month Summary

May 18 2023 — May 18 2024
  • 1048 Commits
    Down -13 (1%) from previous 12 months
  • 31 Contributors
    Up + 1 (3%) from previous 12 months

Ratings

316 users rate this project:
4.23101
   
4.2/5.0
Click to add your rating
  
Review this Project!
 

Static Analysis ( Generated by Coverity Scan for Apache Tomcat )

Repository URL: https://github.com/apache/tomcat

Version: 10.1.19-dev-f3b48f83

2024-01-15
Last Analyzed
258,554
Lines of Code Analyze
0.29
Defect Density

Defects by status for current build

1,219
Total defects
75
Outstanding
787
Fixed

CWE Top 25 defects

ID CWE-Name Number of Defects
79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') 7