We found results for “”
CVE-2025-64775
Good to know:
Date: December 1, 2025
Denial of Service vulnerability in Apache Struts, file leak in multipart request processing causes disk exhaustion.
Severity Score
Related Resources (6)
Severity Score
Weakness Type (CWE)
Incomplete Cleanup
CWE-459Top Fix
Upgrade Version
Upgrade to version org.apache.struts:struts2-core:7.1.1;org.apache.struts:struts2-core:6.8.0;org.apache.struts:struts2-core:6.8.0
CVSS v3.1
| Base Score: |
|
|---|---|
| Attack Vector (AV): | NETWORK |
| Attack Complexity (AC): | LOW |
| Privileges Required (PR): | NONE |
| User Interaction (UI): | NONE |
| Scope (S): | UNCHANGED |
| Confidentiality (C): | NONE |
| Integrity (I): | NONE |
| Availability (A): | HIGH |
Vulnerabilities
Projects
Contact Us


