Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29657
HistoryMar 10, 2021 - 7:22 a.m.

Misinterpretation Of Malicious XML Input

2021-03-1007:22:41
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
90
xml injection
parsing
serializing
system identifiers
fpis
namespaces

EPSS

0.003

Percentile

69.6%

xmldom is vulnerable to XML injection. Repeated parsing and serializing of malicious documents can result in incorrect preservation of system identifiers, FPIs or namespaces.