Apache security advisory (AV23-748)

Serial number: AV23-748
Date: December 8, 2023

On December 4, 2023, Apache published a security advisory to address a vulnerability VulnerabilityA flaw or weakness in the design or implementation of an information system or its environment that could be exploited to adversely affect an organization's assets or operations. in the following products:

  • Apache Struts – versions 2.0.0 to 2.3.37 (EOL)
  • Apache Struts – versions 2.5.0 to 2.5.32
  • Apache Struts – versions 6.0.0 to 6.3.0

The Cyber Centre encourages users and administrators to review the provided web link, perform the suggested mitigations and apply the necessary updates.

Date modified: