<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <title>Struts 1 Vulnerability issue</title>
  <link rel="self" href="https://liferay.dev/c/message_boards/find_thread?p_l_id=119785294&amp;threadId=119353173" />
  <subtitle>Struts 1 Vulnerability issue</subtitle>
  <id>https://liferay.dev/c/message_boards/find_thread?p_l_id=119785294&amp;threadId=119353173</id>
  <updated>2026-04-04T00:55:59Z</updated>
  <dc:date>2026-04-04T00:55:59Z</dc:date>
  <entry>
    <title>RE: Struts 1 Vulnerability issue</title>
    <link rel="alternate" href="https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=119529175" />
    <author>
      <name>Tomáš Polešovský</name>
    </author>
    <id>https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=119529175</id>
    <updated>2020-07-02T21:04:28Z</updated>
    <published>2020-07-02T21:04:28Z</published>
    <summary type="html">Hi,Liferay patched all Struts 1 vulnerabilities, I&amp;#39;m not sure at which version. Upgrading Struts is not possible, Struts 1 and Struts 2 are backwards incompatible.Having said that, version 6.2 has many known vulnerabilities, please upgrade to a more recent version and apply security patches.Thanks.</summary>
    <dc:creator>Tomáš Polešovský</dc:creator>
    <dc:date>2020-07-02T21:04:28Z</dc:date>
  </entry>
  <entry>
    <title>Struts 1 Vulnerability issue</title>
    <link rel="alternate" href="https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=119353172" />
    <author>
      <name>Dhandapani Shanmugam</name>
    </author>
    <id>https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=119353172</id>
    <updated>2020-06-10T03:42:33Z</updated>
    <published>2020-06-10T03:42:33Z</published>
    <summary type="html">Hi All,There is a vulnerability issue found in our application. The report says that Vulnerability software installed Struts 1. They provided the solution to upgrade struts 1 to struts 2 or newer version.Liferay version is 6.2So how to solve this vulnerability issue, because of this , we could not get certificed the application from security team. Kindly do the needful.</summary>
    <dc:creator>Dhandapani Shanmugam</dc:creator>
    <dc:date>2020-06-10T03:42:33Z</dc:date>
  </entry>
</feed>
