Lucene search

K
osvGoogleOSV:CVE-2018-20433
HistoryDec 24, 2018 - 1:29 p.m.

CVE-2018-20433

2018-12-2413:29:00
Google
osv.dev
7

AI Score

9.4

Confidence

High

EPSS

0.006

Percentile

78.4%

c3p0 0.9.5.2 allows XXE in extractXmlConfigFromInputStream in com/mchange/v2/c3p0/cfg/C3P0ConfigXmlUtils.java during initialization.