<reportApi _class='io.jenkins.plugins.analysis.core.restapi.ReportApi'><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>struts-core-1.3.10.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>/usr/local/tomcat/webapps/govwayMonitor.war/WEB-INF/lib/struts-core-1.3.10.jar</fileName><fingerprint>FALLBACK-19072676</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2023-34396: LanguageSpecificPackageVulnerability

Apache Struts vulnerable to memory exhaustion

For additional help see: **Vulnerability CVE-2023-34396**
| Severity | Package | Fixed Version | Link |
| --- | --- | --- | --- |
|HIGH|org.apache.struts:struts-core||[CVE-2023-34396](https://avd.aquasec.com/nvd/cve-2023-34396)|

Allocation of Resources Without Limits or Throttling vulnerability in Apache Software Foundation Apache Struts.This issue affects Apache Struts: through 2.5.30, through 6.1.2.

Upgrade to Struts 2.5.31 or 6.1.2.1 or greater

Package: org.apache.struts:struts-core
Installed Version: 1.3.10
Vulnerability CVE-2023-34396
Severity: HIGH
Fixed Version: 
Link: [CVE-2023-34396](https://avd.aquasec.com/nvd/cve-2023-34396)</message><moduleName></moduleName><origin>trivy</origin><originName>Trivy Security Scanner</originName><packageName>-</packageName><reference>1391</reference><severity>HIGH</severity><toString>struts-core-1.3.10.jar(1,0): CVE-2023-34396: : CVE-2023-34396: LanguageSpecificPackageVulnerability

Apache Struts vulnerable to memory exhaustion

For additional help see: **Vulnerability CVE-2023-34396**
| Severity | Package | Fixed Version | Link |
| --- | --- | --- | --- |
|HIGH|org.apache.struts:struts-core||[CVE-2023-34396](https://avd.aquasec.com/nvd/cve-2023-34396)|

Allocation of Resources Without Limits or Throttling vulnerability in Apache Software Foundation Apache Struts.This issue affects Apache Struts: through 2.5.30, through 6.1.2.

Upgrade to Struts 2.5.31 or 6.1.2.1 or greater

Package: org.apache.struts:struts-core
Installed Version: 1.3.10
Vulnerability CVE-2023-34396
Severity: HIGH
Fixed Version: 
Link: [CVE-2023-34396](https://avd.aquasec.com/nvd/cve-2023-34396)</toString><type>CVE-2023-34396</type></issue><size>1</size><toString>1 warning (high: 1)</toString></reportApi>