Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-58hf-8fhw-r5mw

Опубликовано: 11 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.2
CVSS3: 8.6

Описание

A flaw resulting in XML external entity (XXE) was found in Akana API Platform in which references were improperly restricted during XML-to-JSON processing. The issue affects Akana versions 2026.1, 2025.1.1, and all versions before 2024.1.6 (including older unsupported versions of Akana) and has been fixed as a security patch in the latest release of supported versions.

A flaw resulting in XML external entity (XXE) was found in Akana API Platform in which references were improperly restricted during XML-to-JSON processing. The issue affects Akana versions 2026.1, 2025.1.1, and all versions before 2024.1.6 (including older unsupported versions of Akana) and has been fixed as a security patch in the latest release of supported versions.

EPSS

Процентиль: 26%
0.00327
Низкий

9.2 Critical

CVSS4

8.6 High

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 8.6
nvd
12 дней назад

A flaw resulting in XML external entity (XXE) was found in Akana API Platform in which references were improperly restricted during XML-to-JSON processing. The issue affects Akana versions 2026.1, 2025.1.1, and all versions before 2024.1.6 (including older unsupported versions of Akana) and has been fixed as a security patch in the latest release of supported versions.

EPSS

Процентиль: 26%
0.00327
Низкий

9.2 Critical

CVSS4

8.6 High

CVSS3

Дефекты

CWE-611