Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33631
HistoryJan 14, 2022 - 5:53 a.m.

XML External Entity (XXE)

2022-01-1405:53:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4
corenlp
xml external entity
vulnerability
sanitization
software

EPSS

0.001

Percentile

33.4%

corenlp is vulnerable to xml external entity attack. The vulnerability exists due to a lack of sanitization of XML input containing a reference to an external entity.

EPSS

0.001

Percentile

33.4%