QID 981191
QID 981191: Java (maven) Security Update for org.apache.struts:struts2-core (GHSA-8mr5-h28g-36qx)
When using a Spring AOP functionality to secure Struts actions it is possible to perform a DoS attack. Solution is to upgrade to Apache Struts version 2.5.12 or 2.3.33.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-8mr5-h28g-36qx for updates pertaining to this vulnerability.
Vendor References
- GHSA-8mr5-h28g-36qx -
github.com/advisories/GHSA-8mr5-h28g-36qx
CVEs related to QID 981191
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-8mr5-h28g-36qx | org.apache.struts:struts2-core |
|