Description
Allocation of Resources Without Limits or Throttling vulnerability in Apache Software Foundation Apache Struts.This issue affects Apache Struts: through 2.5.30, through 6.1.2. Upgrade to Struts 2.5.31 or 6.1.2.1 or greater.
Remediation
References
http://www.openwall.com/lists/oss-security/2023/06/14/2
https://cwiki.apache.org/confluence/display/WW/S2-063
https://security.netapp.com/advisory/ntap-20230706-0005/
Related Vulnerabilities
CVE-2022-39203 Vulnerability in npm package matrix-appservice-irc
CVE-2022-41928 Vulnerability in maven package org.xwiki.platform:xwiki-platform-attachment-ui
CVE-2021-3424 Vulnerability in maven package org.keycloak:keycloak-core
CVE-2018-1000632 Vulnerability in maven package org.dom4j:dom4j
CVE-2022-3143 Vulnerability in maven package org.wildfly.security:wildfly-elytron-password-impl