CVE-2025-64775
01.12.2025, 16:15
Denial of Service vulnerability in Apache Struts, file leak in multipart request processing causes disk exhaustion. This issue affects Apache Struts: from 2.0.0 through 6.7.0, from 7.0.0 through 7.0.3. Users are recommended to upgrade to version 6.8.0 or 7.1.1, which fixes the issue.Enginsight
| Vendor | Product | Version |
|---|---|---|
| apache | struts | 2.0.0 ≤ 𝑥 ≤ 6.8.0 |
| apache | struts | 7.0.0 ≤ 𝑥 ≤ 7.1.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
Vulnerability Media Exposure