While we try to maintain full granularity of vulnerabilities affecting obsolete software, this is not always possible, and there may be gaps. However, we do ensure that this vulnerability, and others will be at least caught by an obsolete check.
The nature of obsolete software is that it will contain many known, and unknown unpatched, and un-patchable vulnerabilities.
In this particular case, we wouldn’t be able to recommend a solution to fix CVE-2023-50164 on Struts 2.3.x, however, we would detect the obsolete version of Struts and recommend upgrading to a supported version.