Apache Tomcat Vulnerabilities in Aria Operations for Logs 8.18.3
search cancel

Apache Tomcat Vulnerabilities in Aria Operations for Logs 8.18.3

book

Article ID: 399997

calendar_today

Updated On:

Products

VCF Operations/Automation (formerly VMware Aria Suite)

Issue/Introduction

A recent security scan has identified multiple Apache Tomcat vulnerabilities in VMware Aria Operations for Logs version 8.18.3, specifically affecting versions older than 9.0.104. The identified vulnerabilities include:

  • CVE-2025-31650
  • CVE-2025-31651

Environment

VMware Aria Operations for logs 8.18.3

Resolution

The reported Apache Tomcat vulnerabilities are fixed in Aria Operations for Logs 8.18.4. It is recommended to upgrade to Aria Operations for Logs 8.18.4 to remediate this vulnerability.

Download the upgrade file for Aria Operations for logs 8.18.4: ProductFiles - Support Portal - Broadcom support portal

Follow the steps mentioned in the following document to upgrade Aria Operations for logs to 8.18.4: Upgrade to the Latest Version of VMware Aria Operations for Logs