[Git][security-tracker-team/security-tracker][master] Add CVE-2025-66675/libstruts1.2-java

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Dec 10 21:21:49 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7b539c35 by Salvatore Bonaccorso at 2025-12-10T22:21:25+01:00
Add CVE-2025-66675/libstruts1.2-java

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -23,7 +23,8 @@ CVE-2025-67636 (A missing permission check in Jenkins 2.540 and earlier, LTS 2.5
 CVE-2025-67635 (Jenkins 2.540 and earlier, LTS 2.528.2 and earlier does not properly c ...)
 	NOT-FOR-US: Jenkins (core or plugin)
 CVE-2025-66675 (Denial of Service vulnerability in Apache Struts, file leak in multipa ...)
-	TODO: check
+	- libstruts1.2-java <removed>
+	NOTE: https://cwiki.apache.org/confluence/display/WW/S2-068
 CVE-2025-66004 (A Path Traversal vulnerability in usbmuxd allows local users to escala ...)
 	TODO: check
 CVE-2025-65815 (A lack of security checks in the file import process of AB TECHNOLOGY  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7b539c35129d7ebd92a794d2b23c616b7f8f4fdd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7b539c35129d7ebd92a794d2b23c616b7f8f4fdd
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251210/a82f3f08/attachment.htm>


More information about the debian-security-tracker-commits mailing list