Launch Week Day 1: Announcing Security Design Review
MEDIUM 5.9 Maven

Apache Struts vulnerable to possible DoS attack when using URLValidator

GHSA-86vq-8qhc-5rqw · CVE-2016-8738

Published · Modified

Description

If an application allows enter an URL in a form field and built-in URLValidator is used, it is possible to prepare a special URL which will be used to overload server process when performing validation of the URL.

Ready to move

Start Securing

Free, no credit card | First findings in minutes