GHSA-wc9j-gc65-3cm7
MODERATECVE-2023-41034DDFFileParser and DefaultDDFFileValidator (and so ObjectLoader) are vulnerable to [XXE Attacks](https://owasp.org/www-community/vulnerabilities/XMLExternalEntity(XXE)Processing).
- Affected
- >= 2.0.0-M1, < 2.0.0-M13, < 1.5.0
- Fixed in
- 2.0.0-M13
- Weakness
- CWE-611
- Published
- 2023-08-31
- Source
- github