Lucene search

K
osvGoogleOSV:PYSEC-2017-48
HistoryFeb 15, 2017 - 7:59 p.m.

PYSEC-2017-48

2017-02-1519:59:00
Google
osv.dev
8

EPSS

0.005

Percentile

76.0%

Openpyxl 2.4.1 resolves external entities by default, which allows remote attackers to conduct XXE attacks via a crafted .xlsx document.