GHSA-crh6-fp67-6883
CRITICALCVE-2022-39353xmldom parses XML that is not well-formed because it contains multiple top level elements, and adds all root nodes to the childNodes collection of the Document, without reporting any error or throwing.
- Affected
- < 0.7.7, >= 0.8.0, < 0.8.4, >= 0.9.0-beta.1, < 0.9.0-beta.4
- Fixed in
- 0.7.7
- Weakness
- CWE-20
- Published
- 2022-11-01
- Source
- github
GHSANVDMITREreferencereferencereferencereferencereferencereferencereferencereferencereference