Description
Apache Struts before 2.3.20 has a cross-site scripting (XSS) vulnerability.
Remediation
References
http://jvn.jp/en/jp/JVN88408929/index.html
http://jvndb.jvn.jp/en/contents/2015/JVNDB-2015-000124.html
http://www.securityfocus.com/bid/76624
https://security.netapp.com/advisory/ntap-20200330-0001/
Related Vulnerabilities
CVE-2014-0120 Vulnerability in maven package io.hawt:hawtio-karaf-terminal
CVE-2020-9484 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2021-46089 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core
CVE-2022-41937 Vulnerability in maven package org.xwiki.platform:xwiki-platform-filter-ui
CVE-2017-0783 Vulnerability in maven package org.apache.openmeetings:openmeetings-web