Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21653
HistoryOct 08, 2019 - 5:49 a.m.

XML External Entity (XXE)

2019-10-0805:49:31
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
26

0.002 Low

EPSS

Percentile

62.2%

DiffPlug Spotless is vulnerable to XML external entities (XXE). The XML formatter has resolveExternalURI setting to true by default and it loads external DTD.

0.002 Low

EPSS

Percentile

62.2%

Related for VERACODE:21653