Логотип exploitDog
bind:CVE-2025-4949
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-4949

Количество 6

Количество 6

ubuntu логотип

CVE-2025-4949

7 месяцев назад

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2025-4949

7 месяцев назад

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2025-4949

7 месяцев назад

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2025-4949

7 месяцев назад

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestP ...

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02762-1

4 месяца назад

Security update for eclipse-jgit

EPSS: Низкий
github логотип

GHSA-vrpq-qp53-qv56

7 месяцев назад

Eclipse JGit XML External Entity (XXE) Vulnerability

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-4949

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 9.8
0%
Низкий
7 месяцев назад
redhat логотип
CVE-2025-4949

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 4.8
0%
Низкий
7 месяцев назад
nvd логотип
CVE-2025-4949

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 9.8
0%
Низкий
7 месяцев назад
debian логотип
CVE-2025-4949

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestP ...

CVSS3: 9.8
0%
Низкий
7 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:02762-1

Security update for eclipse-jgit

0%
Низкий
4 месяца назад
github логотип
GHSA-vrpq-qp53-qv56

Eclipse JGit XML External Entity (XXE) Vulnerability

0%
Низкий
7 месяцев назад

Уязвимостей на страницу