Reply to post:

Apache Struts you're stuffed: Vuln allows hackers to inject evil code into biz servers

Anonymous Coward
Anonymous Coward

> and I personally prefer rest webservices, you can implement them as you want, be it with struts2, spring, python, nodejs...

This is Struts 2 we're talking about, which has something of a history https://threatpost.com/attacks-heating-up-against-apache-struts-2-vulnerability/124183/ . The other frameworks you mention will all have vulnerabilities, the good guys just haven't found, fixed and published them (hopefully in that order) yet.

We have no idea whether the bad guys have found and are even currently exploiting them.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon