Lucene search

K
osvGoogleOSV:CVE-2017-18640
HistoryDec 12, 2019 - 3:15 a.m.

CVE-2017-18640

2019-12-1203:15:10
Google
osv.dev
10

6.8 Medium

AI Score

Confidence

Low

0.019 Low

EPSS

Percentile

88.5%

The Alias feature in SnakeYAML before 1.26 allows entity expansion during a load operation, a related issue to CVE-2003-1564.

References