Struts 1 Vulnerability issue

thumbnail
Dhandapani Shanmugam, modified 5 Years ago. Regular Member Posts: 176 Join Date: 3/24/09 Recent Posts
Hi All,There is a vulnerability issue found in our application. The report says that Vulnerability software installed Struts 1. They provided the solution to upgrade struts 1 to struts 2 or newer version.Liferay version is 6.2So how to solve this vulnerability issue, because of this , we could not get certificed the application from security team. Kindly do the needful.
thumbnail
Tomas Polesovsky, modified 5 Years ago. Liferay Master Posts: 677 Join Date: 2/13/09 Recent Posts
Hi,Liferay patched all Struts 1 vulnerabilities, I'm not sure at which version. Upgrading Struts is not possible, Struts 1 and Struts 2 are backwards incompatible.Having said that, version 6.2 has many known vulnerabilities, please upgrade to a more recent version and apply security patches.Thanks.