[ANN] Apache Struts 2: possible RCE in the Struts Showcase app in the Struts 1 plugin example in the Struts 2.3.x series

2017-07-07 Thread Lukasz Lenart
A potential security vulnerability was reported in the Struts 1 plugin used in the Struts 2.3.x series. It is possible to perform a Remote Code Execution attack if given construction exists in the vulnerable application. Please read the security bulletin for more details and inspect your applicatio

Re: Integrate Apache Shiro with Struts2

2017-07-07 Thread Lukasz Lenart
Thanks, merged! 2017-07-06 17:39 GMT+02:00 Kofford, C. Todd : > PR created. > > TK > tkoff...@ku.edu > > -Original Message- > From: Lukasz Lenart [mailto:lukaszlen...@apache.org] > Sent: Thursday, July 6, 2017 7:38 AM > To: Struts Users Mailing List > Subject: Re: Integrate Apache Shiro w