Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-68493

Опубликовано: 11 янв. 2026
Источник: debian
EPSS Средний

Описание

Missing XML Validation vulnerability in Apache Struts, Apache Struts. This issue affects Apache Struts: from 2.0.0 before 2.2.1; Apache Struts: from 2.2.1 through 6.1.0. Users are recommended to upgrade to version 6.1.1, which fixes the issue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libstruts1.2-javaremovedpackage

Примечания

  • https://cwiki.apache.org/confluence/display/WW/S2-069

EPSS

Процентиль: 98%
0.37055
Средний

Связанные уязвимости

CVSS3: 7.1
redhat
7 месяцев назад

Missing XML Validation vulnerability in Apache Struts, Apache Struts. This issue affects Apache Struts: from 2.0.0 before 2.2.1; Apache Struts: from 2.2.1 through 6.1.0. Users are recommended to upgrade to version 6.1.1, which fixes the issue.

CVSS3: 8.1
nvd
7 месяцев назад

Missing XML Validation vulnerability in Apache Struts, Apache Struts. This issue affects Apache Struts: from 2.0.0 before 2.2.1; Apache Struts: from 2.2.1 through 6.1.0. Users are recommended to upgrade to version 6.1.1, which fixes the issue.

CVSS3: 8.1
github
7 месяцев назад

Apache Struts 2 is Missing XML Validation

CVSS3: 8.1
fstec
8 месяцев назад

Уязвимость программной платформы Apache Struts, связанная с отсутствием проверки подлинности XML-документов, позволяющая нарушителю проводить XXE-атаки

EPSS

Процентиль: 98%
0.37055
Средний