Описание
XML external entity (XXE) vulnerability
An XML eXternal Entity (XXE) Injection was discovered in pmml-model before version 1.4.3. A remote attacker can exploit this vulnerability by sending a request to submit malicious External Entity references within the embedded XML metadata to the target system.
Пакеты
Наименование
org.jpmml:pmml-model
maven
Затронутые версииВерсия исправления
< 1.4.3
1.4.3