Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:17025
HistoryMay 02, 2019 - 5:34 a.m.

XML External Entity (XXE)

2019-05-0205:34:54
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.01 Low

EPSS

Percentile

83.3%

libxml2 is vulnerable to XML External Entity (XXE). The vulnerability exists as the xmlStringLenDecodeEntities in parser.c does not provide sufficient sanitization.

References