Known vulnerabilities in Apache Foundation Apache Struts

Website: https://www.apache.org
Total Security Bulletins: 34

Security bulletins (34)

Secuity bulletin Severity Status Published
SB2026011214: XXE in Apache Struts Medium
Patched
12.01.2026
SB2025120157: Denial of service in Apache Struts Medium
Patched
01.12.2025
SB2024121136: Remote code execution in Apache Struts High
Patched Public exploit
11.12.2024
SB2023120703: Remote code execution via file upload in Apache Struts Critical
Patched Exploited
07.12.2023
SB2023091364: Denial of service in Apache Struts Medium
Patched
13.09.2023
SB2023061351: Multiple DoS vulnerabilities in Apache Struts Medium
Patched
13.06.2023
SB2022041218: Remote code execution in Apache Struts High
Patched Public exploit
12.04.2022
SB2022010604: Apache Struts update for Log4j library Medium
Patched
06.01.2022
SB2022010603: Denial of service in Apache Struts Log4j library Medium
Patched
06.01.2022
SB2022010602: Remote code execution in Apache Struts (Apache Log4j component) High
Patched Exploited
06.01.2022
SB2020120801: Remote code execution in Apache Struts High
Patched Exploited
08.12.2020
SB2020081408: Multiple vulnerabilities in Apache Struts High
Patched Public exploit
14.08.2020
SB2018110601: Remote code execution in Apache Struts High
Patched
06.11.2018
SB2018082203: Remote code execution in Apache Struts High
Patched Exploited
22.08.2018
SB2018032805: Denial of service in Apache Struts Low
Patched
28.03.2018
SB2017120205: Denial of service in Apache Struts Medium
Patched
02.12.2017
SB2017092025: Denial of service in Apache Struts Medium
Patched
20.09.2017
SB2017092010: Remote code execution in Apache Struts High
Patched
20.09.2017
SB2017090806: Remote code execution in Apache Struts Medium
Patched Public exploit
08.09.2017
SB2017090720: Remote code execution in Apache Struts High
Patched Exploited
07.09.2017


Showing elements 1 - 20 out of 34