Lucene search

K
osvGoogleOSV:DLA-292-1
HistoryAug 17, 2015 - 12:00 a.m.

libstruts1.2-java - security update

2015-08-1700:00:00
Google
osv.dev
12

0.949 High

EPSS

Percentile

99.3%

The Validator in Apache Struts 1.1 and later contains a function to
efficiently define rules for input validation across multiple pages during
screen transitions. This function contains a vulnerability where input
validation may be bypassed. When the Apache Struts 1 Validator is used,
the web application may be vulnerable even when this function is not used
explicitly.

CPENameOperatorVersion
libstruts1.2-javaeq1.2.9-4