CVE-2015-2992
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 5.8%
exploitation probability
5.8%top 7% of all CVEs
observed exploitation
nono source reports it
Apache Struts before 2.3.20 has a cross-site scripting (XSS) vulnerability.
Affected products
Apache Software Foundation · Apache Struts