Launch Week Day 1: Announcing Security Design Review
UNKNOWN Maven

Apache Struts is vulnerable to Cross-site Scripting

GHSA-3g8j-jj54-3vjg · CVE-2013-6348

Published · Modified

Description

Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 2.3.15.3 allow remote attackers to inject arbitrary web script or HTML via the namespace parameter to (1) actionNames.action and (2) showConfig.action in config-browser/.

Ready to move

Start Securing

Free, no credit card | First findings in minutes