struts-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Rene Gielen <>
Subject Re: [ANN] Struts GA release available - security fix
Date Thu, 17 Oct 2013 20:52:04 GMT
Great job, Lukasz!

Lukasz Lenart <> schrieb:
>The Apache Struts group is pleased to announce that Struts is
>available as a "General Availability" release.The GA designation is
>our highest quality grade.
>Apache Struts 2 is an elegant, extensible framework for creating
>enterprise-ready Java web applications. The framework is designed to
>streamline the full development cycle, from building, to deploying, to
>maintaining applications over time.
>This release includes important security fixes:
>- S2-018 - Broken Access Control Vulnerability in Apache Struts2
>- solved problem with action: prefix broken in
>All developers are strongly advised to update existing Struts 2
>applications to Struts
>Struts is available in a full distribution, or as separate
>library, source, example and documentation distributions, from the
>releases page.
>The release is also available from the central Maven repository under
>Group ID "org.apache.struts".
>The 2.3.x series of the Apache Struts framework has a minimum
>requirement of the following specification versions:
>* Java Servlet 2.4 and JavaServer Pages (JSP) 2.0
>* Java 2 Standard Platform Edition (J2SE) 5
>The release notes are available online at:
>Should any issues arise with your use of any version of the Struts
>framework, please post your comments to the user list, and, if
>appropriate, file a tracking ticket.appropriate, file a tracking
>- The Apache Struts group.
>+ 48 606 323 122
>To unsubscribe, e-mail:
>For additional commands, e-mail:

Sent from my mobile phone
  • Unnamed multipart/alternative (inline, None, 0 bytes)
View raw message