Unwrapping the Struts2 Vulnerability | Sonatype Webinar

New on the Naughty List: Unwrapping the Struts2 Vulnerability

Watch Now

Just when you think it’s safe to step away, another critical vulnerability surfaces reminding us how quickly open source risk can escalate. Recent events highlight a hard truth: widely used components don’t just age, they can become liabilities if left unmanaged. Explore what recurring vulnerabilities reveal about the state of open source security and why reactive approaches are no longer enough. You’ll gain perspective on how leading teams are shifting toward proactive defense strategies that stop risk before it reaches production.

Co-Founder and CTO, Brian Fox and Field CTO, Ilkka Turunen

Mar 20 2026 | 31 mins

While many developers are preparing for a much needed holiday break, yet another remote code execution vulnerability in Apache’s Struts2 Framework has been discovered, the same used to compromise Equifax.

While not as severe as a case such as Log4j, these instances demonstrate that open source is aging like milk not wine.

Join us for a discussion with Co-Founder and CTO, Brian Fox and Field CTO, Ilkka Turunen as they explore why Sonatype’s Repository Firewall, Lifecycle, and other solutions are more important than ever.

Featured Speakers

Brian Fox

CTO and Co-founder, Sonatype

Ilkka Turunen

Field CTO, Sonatype