Package impact

java Maven / org.apache.struts:struts2-core

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2012-0392 medium 7.8 15y ago Apache Struts's CookieInterceptor component does not use the parameter-name whitelist
CVE-2012-0393 medium 7.4 15y ago Apache Struts's ParameterInterceptor component does not prevent access to public constructors
CVE-2014-7809 medium 6.8 12y ago Cross-Site Request Forgery in Apache Struts
CVE-2013-2248 medium 6.8 13y ago Open redirect in Apache Struts
CVE-2012-4386 medium 6.8 14y ago Cross-Site Request Forgery in Apache Struts
CVE-2015-5169 medium 6.1 6.1 9y ago Cross-site Scripting in Apache Struts
CVE-2016-4003 medium 6.1 6.1 10y ago Cross-site Scripting in Apache Struts
CVE-2016-2162 medium 6.1 6.1 10y ago Apache Struts XSS Vulnerability
CVE-2014-0094 medium 6.0 12y ago ClassLoader manipulation in Apache Struts
CVE-2010-1870 medium 6.0 16y ago Server side object manipulation in Apache Struts
CVE-2016-8738 medium 5.9 5.9 9y ago Apache Struts vulnerable to possible DoS attack when using URLValidator
CVE-2017-7672 medium 5.9 5.9 9y ago Apache Struts Improper Input Validation vulnerability
CVE-2014-0116 medium 5.8 12y ago ClassLoader manipulation in Apache Struts
CVE-2013-4310 medium 5.8 13y ago Apache Struts2 Broken Access Control Vulnerability
CVE-2016-4465 medium 5.3 5.3 10y ago Apache Struts vulnerable to possible DoS attack when using URLValidator
CVE-2016-3093 medium 5.3 5.3 10y ago Denial of service in Apache Struts
CVE-2013-6348 medium 4.3 13y ago Apache Struts is vulnerable to Cross-site Scripting
CVE-2011-1772 low 3.6 15y ago Cross-site Scripting in Apache Struts