Critical Tomcat vulnerability CVE-2025-24813 in Test Data Manager
search cancel

Critical Tomcat vulnerability CVE-2025-24813 in Test Data Manager

book

Article ID: 393383

calendar_today

Updated On:

Products

CA Test Data Manager (Data Finder / Grid Tools)

Issue/Introduction

Need to upgrade the Tomcat version as suggested by security team to remediate Critical vulnerability CVE-2025-24813 found in TDM server due to vulnerable Tomcat version embedded in TDM Portal.

Recommendation: Upgrade to Tomcat versions 11.0.3+, 10.1.35+, or 9.0.99+ .

Environment

TDM 4.11.x

Cause

Vulnerability found in third party Tomcat application

Resolution

The patch with remediated Tomcat version has been published to the below page for TDM patches in support portal with the build name: TDMWeb-4.11.1004.0.zip

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/release-announcements/Test-Data-Manager-TDM-Patches/16649

Direct link below:

https://ftp.broadcom.com/user/downloads/pub/TDM/TDM_Portal_docker/TDMWeb-4.11.1004.0.zip

NOTE: After applying the patch, upgrade GT DataMaker to version 4.11.20.0, or greater, in order to connect DataMaker to the GTREP repository database.