Lucene search

K
redhatcveRedhat.comRH:CVE-2019-5427
HistoryMay 14, 2019 - 12:50 p.m.

CVE-2019-5427

2019-05-1412:50:17
redhat.com
access.redhat.com
16

EPSS

0.023

Percentile

89.8%

c3p0 version < 0.9.5.4 may be exploited by a billion laughs attack when loading XML configuration due to missing protections against recursive entity expansion when loading configuration.