Описание
XMLUnit for Java before 2.10.0, in the default configuration, might allow code execution via an untrusted stylesheet (used for an XSLT transformation), because XSLT extension functions are enabled.
EPSS
4 Medium
CVSS3
Дефекты
Связанные уязвимости
XMLUnit for Java before 2.10.0, in the default configuration, might allow code execution via an untrusted stylesheet (used for an XSLT transformation), because XSLT extension functions are enabled.
XMLUnit for Java before 2.10.0, in the default configuration, might allow code execution via an untrusted stylesheet (used for an XSLT transformation), because XSLT extension functions are enabled.
XMLUnit for Java before 2.10.0, in the default configuration, might al ...
XMLUnit for Java has Insecure Defaults when Processing XSLT Stylesheets
EPSS
4 Medium
CVSS3