Lucene search

K
osvGoogleOSV:GHSA-4PRJ-VW9J-V6PR
HistoryMay 14, 2022 - 12:54 a.m.

Arbitrary code execution in Apache Struts 2

2022-05-1400:54:13
Google
osv.dev
15
apache struts 2
rest plugin
arbitrary code execution

EPSS

0.067

Percentile

93.9%

The REST plugin in Apache Struts 2 2.3.19 through 2.3.28.1 allows remote attackers to execute arbitrary code via a crafted expression.