Skip to content

Commit 0b866f2

Browse files
committed
docs(security): added sec notices 154, 155
1 parent 8fa33de commit 0b866f2

File tree

1 file changed

+49
-0
lines changed

1 file changed

+49
-0
lines changed

security/content/notices.md

Lines changed: 49 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -15,6 +15,55 @@ releases of the community platform.
1515

1616
# Notices
1717

18+
## Notice 155
19+
20+
**Publication Date: February 25th, 2026**
21+
22+
**Product affected:**
23+
24+
Camunda 7
25+
26+
**Impact:**
27+
28+
The version of Tomcat shipped with Camunda 7 was affected by the following vulnerabilities:
29+
30+
- https://nvd.nist.gov/vuln/detail/CVE-2025-66614
31+
- https://nvd.nist.gov/vuln/detail/CVE-2026-24734
32+
33+
**How to determine if the installation is affected**
34+
35+
You use the Tomcat distribution from 11.0.0-M1 through 11.0.14, from 10.1.0-M1 through 10.1.49, from 9.0.0-M1 through 9.0.112
36+
or Docker image **AND** the following Camunda versions or lower: 7.24.3, 7.23.8, 7.22.11.
37+
38+
**Solution**
39+
40+
Camunda has provided the following releases, which contain a fix:
41+
42+
Camunda 7.22.12, 7.23.9, 7.24.4.
43+
44+
## Notice 154
45+
46+
**Publication Date: February 25th, 2026**
47+
48+
**Product affected:**
49+
50+
Optimize 3
51+
52+
**Impact:**
53+
54+
The version of Alpine Linux used by Camunda Optimize 3 was affected by the following vulnerabilities:
55+
- https://nvd.nist.gov/vuln/detail/CVE-2025-15467
56+
57+
**How to determine if the installation is affected**
58+
59+
You use the following Camunda Optimize 3 versions or lower: 3.15.10, 3.14.11
60+
61+
**Solution**
62+
63+
Camunda has provided the following releases, which contain a fix:
64+
65+
Camunda Optimize 3.15.11, 3.14.12.
66+
1867
## Notice 153
1968

2069
**Publication Date: February 16th, 2026**

0 commit comments

Comments
 (0)