CyberSec.Space Logo
Back to CVE Browser

CVE-2025-64775

HIGH
7.5
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2025-12-01
Last Modified2026-06-17
Data SourcesNVD

Vulnerability Description

Denial of Service vulnerability in Apache Struts, file leak in multipart request processing causes disk exhaustion. This issue affects Apache Struts: from 2.0.0 through 6.7.0, from 7.0.0 through 7.0.3. Users are recommended to upgrade to version 6.8.0 or 7.1.1, which fixes the issue.

Affected Platforms (CPE)

📦
Apache

Struts

>= 2.0.0 and < 6.8.0>= 7.0.0 and < 7.1.1

References & Advisories

Related Vulnerabilities