Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
Improper Restriction of XML External Entity Reference in proCertum SmartSign
Netty: XML External Entity (XXE) injection via unconfigured XML factory when DTD and entity processing are enabled
XXE in Netcad's NetGIS
Adobe Experience Manager | Improper Restriction of XML External Entity Reference ('XXE') (CWE-611)
Symfony: XXE (Local File Disclosure) in DomCrawler::addXmlContent() via validateOnParse = true
Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior contain(s) an Improper Restriction of XML External Entity Reference vulnerability
HAPI FHIR: XXE in XsltUtilities.saxonTransform via unhardened Saxon TransformerFactory
Foxit PDF Editor/Reader XDP XFA XXE arbitrary local file read
Apache Lucene.Net: XXE vulnerability in Lucene.Net.Analysis.Common PatternParser
XXE attack in IBM Business Automation Manager Open Editions
Docling: Unsafe Archive Extraction and XML Parsing in METS-GBS Backend
Apicurio/apicurio-registry: apicurio-registry: unhardened saxparser in content-type detection leads to blind xxe / ssrf / billion-laughs dos
Nokogiri: XML::Schema on JRuby allows network requests when NONET is set, bypassing CVE-2020-26247
Grav - XML External Entity Injection via SVG Upload
libxml2: Use after free in xmlParseInternalSubset via improper entity resolution handling
zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 XML Parser import xml external entity reference
pam_usb: xmlReadFile flags=0 permits XXE network entity fetching in conf.c
GeoServer has a Server-Side Request Forgery (SSRF) Vulnerability in its XML Entity Resolution
Apache CXF: XML External Entity (XXE) Injection in W3CMultiSchemaFactory and EndpointReferenceUtils
Jaxp13 XPath XXE via StreamSource and SAXSource
Showing 1 - 20 of 1,000+ results