Known vulnerabilities in Library Support for Struts

Software CPE: cpe:2.3:a:ibm_corporation:library_support_for_struts:*:*:*:*:*:*:*:*
Total vulnerabilities: 9
Public exploits: 4
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Library Support for Struts Library Support for Struts is affected by 9 known vulnerabilities: 1 high, 7 medium, 1 low Critical High Medium Low

Vulnerabilities (9)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU121148 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2025-68493
CWE-611 Medium
Available
No
- 12.01.2026 SB2026011214
SB2026021948
SB20260428178
#VU119841 - Resource exhaustion
CVE-2025-66675
CWE-400 Medium
No
No
- 11.12.2025 SB2025120157
SB2026021868
SB2026021948
#VU118877 - Resource exhaustion
CVE-2025-64775
CWE-400 Medium
No
No
- 01.12.2025 SB2025120157
SB2026012180
SB2026021948
and 4 more
#VU111165 - Improper Access Control
CVE-2025-48734
CWE-284 Medium
No
No
- 16.06.2025 SB2025061643
SB2025061644
SB2025061645
and 141 more
#VU111162 - Resource exhaustion
CVE-2025-48976
CWE-400 Medium
Available
No
- 16.06.2025 SB2025061634
SB2025061635
SB2025061927
and 156 more
#VU101653 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-53677
CWE-22 High
Available
No
2.5.37 11.12.2024 SB2024121136
SB2025012198
SB2025041017
and 2 more
#VU98025 - Resource exhaustion
CVE-2024-47554
CWE-400 Medium
No
No
- 03.10.2024 SB2024100352
SB2024100421
SB2024101007
and 132 more
#VU72427 - Allocation of Resources Without Limits or Throttling
CVE-2023-24998
CWE-770 Medium
Available
No
- 20.02.2023 SB2023022046
SB2023022047
SB2023030917
and 202 more
#VU52252 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-29425
CWE-22 Low
No
No
- 15.04.2021 SB2021041510
SB2021081922
SB2021093016
and 121 more