YASRV (Yet Another Struts RCE Vulnerability) yes a different one from yesterday, (Thu, Sep 7th)

Yesterday saw CVE-2017-9805, today we have a new remote code execution vulnerability in Apache Struts 2 which is CVE-2017-12611. Yesterdays was in the REST API and related to Java XML unsafe deserializarion. Todays relates to using Freemarker in your application. Both should encourage you to patch.

Article Link: https://isc.sans.edu/diary/rss/22796