Apache Releases Security Advisory for Struts 2

Cybersecurity and Infrastructure Security Agency (CISA) - Defend Today, Secure Tomorrow

You are subscribed to Cybersecurity Advisories for Cybersecurity and Infrastructure Security Agency. This information has recently been updated, and is now available.

04/12/2022 07:20 PM EDT

Original release date: April 12, 2022

The Apache Software Foundation has released a security advisory to address a vulnerability in Struts in the version range 2.0.0 to 2.5.29. An attacker could exploit this vulnerability to take control of an affected system.  

CISA encourages users and administrators to review Apache’s security advisory S2-062 and upgrade to the latest released version.

This product is provided subject to this Notification and this Privacy & Use policy.