Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
Apache Struts Framework: Unrestricted File Upload
UBUNTU-CVE-2026-3632
Summary
The Apache Struts framework has a vulnerability that allows attackers to upload malicious files to a server. This could lead to unauthorized access and potentially allow hackers to take control of the server. Users should update to the latest version of the Apache Struts framework to fix this issue.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions | Fix available |
|---|---|---|---|
| canonical | libsoup2.4 | All versions | – |
| canonical | libsoup2.4 | All versions | – |
| canonical | libsoup2.4 | All versions | – |
| canonical | libsoup2.4 | All versions | – |
| canonical | libsoup3 | All versions | – |
| canonical | libsoup2.4 | All versions | – |
| canonical | libsoup3 | All versions | – |
| canonical | libsoup2.4 | All versions | – |
| canonical | libsoup3 | All versions | – |
Original title
[Unknown description]
Original description
[Unknown description]
- https://ubuntu.com/security/CVE-2026-3632 Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2026-3632 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2445127 Third Party Advisory
Published: 9 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026