suse · CVE-2016-9180

Quick triage

Priority: high Published: 2021-05-30 13:47:29 UTC Updated: 2026-04-18 15:55:59 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-9180 severity important: SUSE including 238 source package names (21:perl-XML-Twig-3.52-3.3.1, amazon/suse-sles-15-sp1-chost-byos-v20210304-hvm-ssd-x86_64, …), 375 product×package rows across 145 product lines (Container suse/kiosk/xorg, HPE Helion OpenStack 8, … (145 product lines)): Known Affected 231, Fixed 144.

Description:

perl-XML-Twig: The option to `expand_external_ents`, documented as controlling external entity expansion in XML::Twig does not work. External entities are always expanded, regardless of the option's setting.

cvelogic Threat Intelligence