The host is installed with Apache Tomcat 10.x before 10.0.0-M10, 9.0.0.M1 before 9.0.40, 8.5.0 before 8.5.60 or 7.x before 7.0.107 and is prone to a Information disclosure vulnerability. A flaw is present in application, which fails to properly handle an issue in the JRE API File.getCanonicalPath(). Successful exploitation could allow attackers to bypass security constraints and/or view the source ...