Tag Archives: security

Refactoring for Struts2 security changes.

I recently upgraded my Struts2 version from 2.3.15.1 to 2.3.16. There are a couple of important security upgrades in this update (http://struts.apache.org/development/2.x/docs/s2-018.html and http://struts.apache.org/development/2.x/docs/s2-019.html) so it is worth upgrading. One of the changes was to turn off Dynamic Method Invocation … Continue reading

Posted in Uncategorized | Tagged , , , , | Leave a comment