Launch Week Day 1: Announcing Security Design Review
HIGH 8.8 Maven

Unrestricted Upload of File with Dangerous Type in Apache Struts2

GHSA-8m5q-crqq-6pmf · CVE-2012-1592

Published · Modified

Description

A local code execution issue exists in Apache Struts2 when processing malformed XSLT files, which could let a malicious user upload and execute arbitrary files. A patch exists as of version 2.5.22.

Ready to move

Start Securing

Free, no credit card | First findings in minutes