Executive brief
Apache Struts Extras Before 2 has an Improper Output Neutralization for Logs Vulnerability
Affected products
- Maven struts:struts
- Maven org.apache.struts:struts-extras
Junglewise Threat Intelligence
CVE-2025-54656 · Severity: low · CVSS 3.1 · Published 2025-07-30
Technologies: struts:struts (Maven). Vendors: Maven.
Apache Struts Extras Before 2 has an Improper Output Neutralization for Logs Vulnerability