Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Apache Struts — Vulnerabilities & Security Advisories 26

All 26 CVE vulnerabilities found in Apache Struts, with AI-generated Chinese analysis, references, and POCs.

Vendor: Apache Software Foundation

CVE IDTitleCVSSSeverityPublished
CVE-2025-68493 Apache Struts, Apache Struts: XXE vulnerability in outdated XWork component CWE-611 7.5 -2026-01-11
CVE-2025-66675 Apache Struts: File leak in multipart request processing causes disk exhaustion (DoS) - version ranges fixed CWE-459 7.5AIHighAI2025-12-10
CVE-2025-64775 Apache Struts: File leak in multipart request processing causes disk exhaustion (DoS) CWE-459 7.5 -2025-12-01
CVE-2024-53677 Apache Struts: Mixing setters for uploaded files and normal fields can allow bypass file upload checks 9.8 -2024-12-11
CVE-2023-50164 Apache Struts: File upload component had a directory traversal vulnerability CWE-552 9.8 -2023-12-07
CVE-2023-41835 Apache Struts: excessive disk usage CWE-459 8.2 -2023-12-05
CVE-2023-34396 Apache Struts: DoS via OOM owing to no sanity limit on normal form fields in multipart forms CWE-770 4.3 Medium2023-06-14
CVE-2023-34149 Apache Struts: DoS via OOM owing to not properly checking of list bounds CWE-770 4.3 Medium2023-06-14
CVE-2021-31805 Forced OGNL evaluation, when evaluated on raw not validated user input in tag attributes, may lead to RCE. CWE-917 9.8 -2022-04-12
CVE-2020-17530 Apache Struts 代码注入漏洞 9.8 -2020-12-11
CVE-2019-0233 Apache Struts 安全漏洞 7.5 -2020-09-14
CVE-2019-0230 Apache Struts 代码执行漏洞 9.8 -2020-09-14
CVE-2015-2992 Apache Struts 跨站脚本漏洞 6.1 -2020-02-27
CVE-2018-11776 Apache Struts 输入验证错误漏洞 8.1 -2018-08-22
CVE-2018-1327 Apache Struts 2 输入验证错误漏洞 7.5 -2018-03-27
CVE-2017-15707 Apache Struts 2 安全漏洞 7.5 -2017-12-01
CVE-2017-9804 Apache Struts 2 安全漏洞 5.9 -2017-09-20
CVE-2017-9793 Apache Struts 输入验证错误漏洞 7.5 -2017-09-20
CVE-2017-12611 Apache Struts 输入验证错误漏洞 9.8 -2017-09-20
CVE-2016-8738 Apache Struts 2 安全漏洞 5.9 -2017-09-20
CVE-2016-6795 Apache Struts 路径遍历漏洞 9.8 -2017-09-20
CVE-2017-9805 Apache Struts 代码问题漏洞 8.1 -2017-09-15
CVE-2017-9787 Apache Struts 2 安全漏洞 7.5 -2017-07-13
CVE-2017-7672 Apache Struts 2 安全漏洞 5.9 -2017-07-13
CVE-2017-9791 Apache Struts 输入验证错误漏洞 9.8 -2017-07-10
CVE-2017-5638 Apache Struts 2 输入验证错误漏洞 9.8 -2017-03-11

All 26 known CVE vulnerabilities affecting Apache Struts with full Chinese analysis, references, and POCs where available.