(tick) These are the notes for the Struts 2.0.11.2 distribution.

(warning) Struts 2.0.11.2 comes with a security fixed version 2.0.5 of XWork, which corrects a serious vulnerability in ParametersInterceptor allowing malicious users to remotely change server side context objects. All users are strongly encouraged to upgrade to Struts 2.0.11.2.

(tick) For prior notes in this release series, see Release Notes 2.0.11.1

Changelog

Issue Detail

Issue List

Other resources

Release Plan

  • Struts 2.0.11.2 is a security fix for the prior Struts 2.0.11.1 GA release.
  • The Release Manager is Rene Gielen.
  • The tag date for the release is 23 Jun 2008.
  • No labels