You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@struts.apache.org by Yasser Zamani <ya...@apache.org> on 2023/06/14 07:34:50 UTC
S2-063: CVE-2023-34149: Apache Struts: DoS via OOM owing to not properly checking of list bounds
Affected versions:
- Apache Struts through 2.5.30
- Apache Struts through 6.1.2
Description:
Allocation of Resources Without Limits or Throttling vulnerability in Apache Software Foundation Apache Struts.This issue affects Apache Struts: through 2.5.30, through 6.1.2.
Credit:
Matthew McClain (finder)
References:
https://cwiki.apache.org/confluence/display/WW/S2-063
https://struts.apache.org/
https://www.cve.org/CVERecord?id=CVE-2023-34149
---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@struts.apache.org
For additional commands, e-mail: dev-help@struts.apache.org