Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
opensymphony webwork - vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2011-2088
XWork 2.2.1 in Apache Struts 2.2.1, and OpenSymphony XWork in OpenSymphony WebWork, allows remote malicious users to obtain potentially sensitive information about internal Java class paths via vectors involving an s:submit element and a nonexistent method, a different vulnerabil...
Apache Struts 2.2.1
Opensymphony Xwork 2.2.1
Opensymphony Webwork -
Opensymphony Xwork -
6.8
CVSSv2
CVE-2007-4556
Struts support in OpenSymphony XWork prior to 1.2.3, and 2.x prior to 2.0.4, as used in WebWork and Apache Struts, recursively evaluates all input as an Object-Graph Navigation Language (OGNL) expression when altSyntax is enabled, which allows remote malicious users to cause a de...
Opensymphony Xwork
2.6
CVSSv2
CVE-2011-1772
Multiple cross-site scripting (XSS) vulnerabilities in XWork in Apache Struts 2.x prior to 2.2.3, and OpenSymphony XWork in OpenSymphony WebWork, allow remote malicious users to inject arbitrary web script or HTML via vectors involving (1) an action name, (2) the action attribute...
Apache Struts 2.0.0
Apache Struts 2.0.1
Apache Struts 2.0.2
Apache Struts 2.0.3
Apache Struts 2.0.4
Apache Struts 2.0.5
Apache Struts 2.0.6
Apache Struts 2.0.7
Apache Struts 2.0.8
Apache Struts 2.0.9
Apache Struts 2.0.10
Apache Struts 2.0.11
1 EDB exploit
Preferred Score:
CVSSv2
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
duogeek
CVE-2025-24616
CVE-2025-23751
CVE-2024-12356
IDOR
apache software foundation
CVE-2025-23851
custom widget creator
scroll top
CVE-2024-13152
log injection
NULL pointer dereference
CVE-2025-24016
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started