Описание
Moderate severity vulnerability that affects org.apache.ignite:ignite-core
Apache Ignite before 1.9 allows man-in-the-middle attackers to read arbitrary files via XXE in modified update-notifier documents.
Пакеты
Наименование
org.apache.ignite:ignite-core
maven
Затронутые версииВерсия исправления
< 1.9
1.9
Связанные уязвимости
CVSS3: 5.9
nvd
почти 9 лет назад
Apache Ignite before 1.9 allows man-in-the-middle attackers to read arbitrary files via XXE in modified update-notifier documents.