Configured cipher preference order not preserved vulnerability in Apache Tomcat.
This issue affects Apache Tomcat: from 11.0.16 through 11.0.18, from 10.1.51 through 10.1.52, from 9.0.114 through 9.0.115.
Users are recommended to upgrade to version 11.0.20, 10.1.53 or 9.0.116, which fix the issue.
Metrics
Affected Vendors & Products
References
History
Fri, 10 Apr 2026 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Thu, 09 Apr 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Configured cipher preference order not preserved vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.16 through 11.0.18, from 10.1.51 through 10.1.52, from 9.0.114 through 9.0.115. Users are recommended to upgrade to version 11.0.20, 10.1.53 or 9.0.116, which fix the issue. | |
| Title | Apache Tomcat: TLS cipher order is not preserved | |
| References |
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2026-04-09T23:15:48.414Z
Reserved: 2026-03-04T08:16:56.456Z
Link: CVE-2026-29129
No data.
Status : Received
Published: 2026-04-09T20:16:24.343
Modified: 2026-04-10T00:16:34.673
Link: CVE-2026-29129
No data.
OpenCVE Enrichment
No data.