CVE-2023-34396
published 2023-06-14CVE-2023-34396: Allocation of Resources Without Limits or Throttling vulnerability in Apache Software Foundation Apache Struts.This issue affects Apache Struts: through…
high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
Allocation of Resources Without Limits or Throttling vulnerability in Apache Software Foundation Apache Struts.This issue affects Apache Struts: through 2.5.30, through 6.1.2.
Upgrade to Struts 2.5.31 or 6.1.2.1 or greater
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | struts | < 2.5.31 | 2.5.31 |
| apache | struts | >= 6.0.0 < 6.1.2.1 | 6.1.2.1 |
| apache_software_foundation | apache_struts | <= 2.5.30 | — |
| atlassian | bamboo_data_center | — | — |