Lucene search

K
osvGoogleOSV:GHSA-XG75-68X3-7P3Q
HistoryMay 17, 2022 - 2:16 a.m.

Apache Struts vulnerable to possible DoS attack when using URLValidator

2022-05-1702:16:00
Google
osv.dev
9

5.4 Medium

AI Score

Confidence

High

0.959 High

EPSS

Percentile

99.5%

The URLValidator class in Apache Struts 2 2.3.20 through 2.3.28.1 and 2.5.x before 2.5.13 allows remote attackers to cause a denial of service via a null value for a URL field.

5.4 Medium

AI Score

Confidence

High

0.959 High

EPSS

Percentile

99.5%