xmlbeam CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

xmlbeam vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to xmlbeam, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2018-1259 Spring Data Commons, versions 1.13 prior to 1.13.12 and 2.0 prior to 2.0.7, used in combination with XMLBeam 1.4.14 or earlier versions, contains a property binder vulnerability caused by improper restriction of XML external entity references as underlying library XMLBeam does not restrict external reference expansion. An unauthenticated remote malicious user can supply specially crafted request parameters against Spring Data's projection-based request payload binding to access arbitrary files o [email protected] 7.5 9.83% 2018-05-11 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence