CVE-2025-53506 | Apache Tomcat up to 9.0.106/10.1.42/11.0.8 HTTP/2 Client resource consumption
A vulnerability, which was classified as problematic, has been found in Apache Tomcat up to 9.0.106/10.1.42/11.0.8. This issue affects some unknown processing of the component HTTP2 Client Handler. The manipulation leads to resource consumption.
The identification of this vulnerability is CVE-2025-53506. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.