Lucene search

K
cvelistMitreCVELIST:CVE-2019-11068
HistoryApr 10, 2019 - 7:38 p.m.

CVE-2019-11068

2019-04-1019:38:18
mitre
www.cve.org
1

9.6 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

65.5%

libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded.

References