Known vulnerabilities in Apache Foundation Apache Struts 2.5.32

Website: https://www.apache.org
Total Security Bulletins: 4

Security bulletins (4)

Secuity bulletin Severity Status Published
SB2026011214: XXE in Apache Struts Medium
Patched
12.01.2026
SB2025120157: Denial of service in Apache Struts Medium
Patched
01.12.2025
SB2024121136: Remote code execution in Apache Struts High
Patched Public exploit
11.12.2024
SB2023120703: Remote code execution via file upload in Apache Struts Critical
Patched Exploited
07.12.2023