Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21368
HistoryAug 26, 2019 - 3:23 a.m.

Arbitrary Code Injection

2019-08-2603:23:36
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

0.001 Low

EPSS

Percentile

50.6%

xmlsec is vulnerable to arbitrary code injection. An attacker is able to inject arbitrary code via the caching mechanism that was introduced to speed up the creation of new XML documents.

References