com.opensymphony:xwork vulnerabilities

Licenses: Unknown

Direct Vulnerabilities

Known vulnerabilities in the com.opensymphony:xwork package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
Arbitrary OGNL Statement Execution

[2.0.0,2.0.6)[2.1.0,2.1.2)

Package versions

8 VERSIONS IN TOTAL
versionpublisheddirect vulnerabilities
2.1.324 Apr, 2009
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
2.1.221 Dec, 2008
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
2.1.11 Apr, 2008
  • 0
    C
  • 0
    H
  • 1
    M
  • 0
    L
2.1.015 Oct, 2007
  • 0
    C
  • 0
    H
  • 1
    M
  • 0
    L
2.0.715 Nov, 2008
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
2.0.614 Oct, 2008
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
2.0.513 Jun, 2008
  • 0
    C
  • 0
    H
  • 1
    M
  • 0
    L
2.0.419 Jul, 2007
  • 0
    C
  • 0
    H
  • 1
    M
  • 0
    L