GHSA-f5h9-qx38-2hgp
CRITICALCVE-2022-4725A vulnerability was found in AWS SDK 2.59.0. It has been rated as critical. This issue affects the function XpathUtils of the file aws-android-sdk-core/src/main/java/com/amazonaws/util/XpathUtils.java of the component XML Parser. The manipulation leads to server-side request forgery. Upgrading to version 2.59.1 can address this issue. The name of the patch is c3e6d69422e1f0c80fe53f2d757b8df97619af
- Affected
- <= 2.59.0
- Fixed in
- 2.59.1
- Weakness
- CWE-918
- Published
- 2022-12-27
- Source
- github