GHSA-6xm7-3cc5-47f9
HIGHCVE-2022-37189DDMAL MEI2Volpiano 0.8.2 is vulnerable to XML External Entity (XXE), leading to a Denial of Service. This occurs due to the usage of the unsafe 'xml.etree' library to parse untrusted XML input.
- Affected
- <= 0.8.2
- Fixed in
- not stated
- Weakness
- CWE-611
- Published
- 2022-09-08
- Source
- github