The Vulnerability History Project
Vulnerabilities
Insights
Curate
Tags
All
Projects
CWEs
Languages
Lessons
Severities
Subsystems
More
News
Projects We Study
How to Contribute
By the Numbers
About Us
Toggle Theme
Warning: Our website does not support Internet Explorer, please use Edge instead.
Validates action, namespace and method in the same way
by
Randy the Sloth 2018-06-21 07:19:46 UTC
commit 6e87474f9ad0549f07dd2c37d50a9ccd0977c6e5
Struts
Fix
CVE-2018-11776
core/src/main/java/org/apache/struts2/StrutsConstants.java
-5
core/src/main/java/org/apache/struts2/dispatcher/mapper/DefaultActionMapper.java
+2
-33
core/src/test/java/org/apache/struts2/dispatcher/mapper/DefaultActionMapperTest.java
+86
-111
plugins/rest/src/main/java/org/apache/struts2/rest/RestActionMapper.java
+1
-1
expand_less