Executive brief
Apache Tiles: Unvalidated input may lead to path traversal and XXE
Affected products
- Maven org.apache.struts:struts-tiles
- Maven struts:struts
- Maven org.apache.tiles:tiles-core
Junglewise Threat Intelligence
CVE-2023-49735 · Severity: low · CVSS 3.1 · Published 2023-12-01
Technologies: struts:struts (Maven). Vendors: Maven.
Apache Tiles: Unvalidated input may lead to path traversal and XXE