Lucene search

K
osvGoogleOSV:CVE-2019-3772
HistoryJan 18, 2019 - 10:29 p.m.

CVE-2019-3772

2019-01-1822:29:00
Google
osv.dev
11

AI Score

9.6

Confidence

High

EPSS

0.005

Percentile

76.9%

Spring Integration (spring-integration-xml and spring-integration-ws modules), versions 4.3.18, 5.0.10, 5.1.1, and older unsupported versions, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources.

AI Score

9.6

Confidence

High

EPSS

0.005

Percentile

76.9%