Description

Missing XML Validation vulnerability in Apache Struts, Apache Struts. This issue affects Apache Struts: from 2.0.0 before 2.2.1; Apache Struts: from 2.2.1 through 6.1.0. Users are recommended to upgrade to version 6.1.1, which fixes the issue.

INFO

Published Date :

2026-01-11T13:05:36.894Z

Last Modified :

2026-01-12T13:52:58.210Z

Source :

apache
AFFECTED PRODUCTS

The following products are affected by CVE-2025-68493 vulnerability.

Vendors Products
Apache
  • Struts

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact