Apache Struts 2 DoS Vulnerability Let Attackers Crash Server
ID: e7c07e16-5fc5-5ec8-b3bf-bee5b94f6832
STIX ID: report--e7c07e16-5fc5-5ec8-b3bf-bee5b94f6832
Feed Name: cybersecurityNews.com
Threat Score
A critical denial-of-service vulnerability (CVE-2025-64775) in Apache Struts 2 allows attackers to exploit a file-leak in multipart request handling to exhaust disk space and crash servers; multiple version lines are affected including actively maintained releases—organizations should upgrade to Struts 6.8.0 or 7.1.1 or apply mitigations immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
