Known vulnerabilities in Apache Foundation Apache Struts 2.3.8

Website: https://www.apache.org
Total Security Bulletins: 19

Security bulletins (19)

Secuity bulletin Severity Status Published
SB2026011214: XXE in Apache Struts Medium
Patched
12.01.2026
SB2025120157: Denial of service in Apache Struts Medium
Patched
01.12.2025
SB2024121136: Remote code execution in Apache Struts High
Patched Public exploit
11.12.2024
SB2023091364: Denial of service in Apache Struts Medium
Patched
13.09.2023
SB2023061351: Multiple DoS vulnerabilities in Apache Struts Medium
Patched
13.06.2023
SB2022041218: Remote code execution in Apache Struts High
Patched Public exploit
12.04.2022
SB2020120801: Remote code execution in Apache Struts High
Patched Exploited
08.12.2020
SB2020081408: Multiple vulnerabilities in Apache Struts High
Patched Public exploit
14.08.2020
SB2018110601: Remote code execution in Apache Struts High
Patched
06.11.2018
SB2018082203: Remote code execution in Apache Struts High
Patched Exploited
22.08.2018
SB2018032805: Denial of service in Apache Struts Low
Patched
28.03.2018
SB2017090806: Remote code execution in Apache Struts Medium
Patched Public exploit
08.09.2017
SB2017082505: Denial of service in Apache Struts Low
Patched
25.08.2017
SB2017090721: Denial of service in Apache Struts Low
Patched
25.08.2017
SB2017070704: Remote code execution in Apache Struts High
Patched Exploited
10.07.2017
SB2017030610: Remote code execution in Apache Struts Critical
Patched Exploited
06.03.2017
SB2014042909: Remote code execution in Apache Struts High
Patched Public exploit
29.04.2014
SB2014030201: Security bypass in Apache Struts Critical
Patched Public exploit
02.03.2014
SB2014020601: Denial of service in Apache Struts High
Patched
06.02.2014