Upgrading to a newer version can introduce new security vulnerabilities or require careful attention to ensure that no new security flaws are introduced while addressing older vulnerabilities.
Stay ahead and competitive in Open Source! Get insights, trends, and predictions from real users in the 2025 Enterprise Linux & Open Source Landscape Report
Apache Struts 2.5 no longer receives security updates.
Upgrading to a newer version can introduce new security vulnerabilities or require careful attention to ensure that no new security flaws are introduced while addressing older vulnerabilities.
Struts is frequently used alongside a variety of third-party libraries, many of which may have specific dependencies on Struts 2.5 – and will need to be updated as well.
Despite its large community, detailed documentation for upgrading between major versions may be limited, slowing the upgrade process and increasing the risk of errors.
Users upgrading from Struts 2.5 may find it difficult to get immediate answers to their specific upgrade issues, especially when faced with obscure bugs or edge cases.
Gain ongoing security updates for enduring protection against vulnerabilities until your organization is ready to upgrade – indefinitely.
Get as many years as you need of security patches for Struts vulnerabilities while you strategize your upgrade.
Avoid code refactoring and keep your Struts web applications running smoothly for years to come.
Carry on with a stable and functional environment until your team is prepared for a smooth – not rushed – migration.
Gain 14-day SLAs for security fixes and establish transparency with detailed SBOMs for each library.
Free your team from the pressures of end-of-support deadlines and plan an upgrade timeline that works best for you.
We have been consistently ensuring the cybersecurity, stability, and compliance of open source – from end-of-life Python, PHP, and Java languages to the most popular Linux distributions and Spring – for over a decade.
Our team has the battle-tested expertise and industry-leading technologies required to deliver timely and extensively tested security patches with over 120,000 patches released to date – and growing.
Stay protected with long-term Struts 2.5 security updates until you’re ready to migrate.