CVE-2015-2992 (struts) Apache Struts before 2.3.20 has a cross-site scripting (XSS) vulnerability. View Full Alert Related Posts CVE-2015-2992Apache Struts before 2.3.20 has a cross-site scripting (XSS) vulnerability. View Full Alert CVE-2015-8313GnuTLS incorrectly validates the first byte of padding in CBC modes View Full Alert CVE-2015-6960edx-platform before 2015-09-17 allows XSS via a team name. View Full Alert