Логотип exploitDog
bind:CVE-2025-4949
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-4949

Количество 6

Количество 6

ubuntu логотип

CVE-2025-4949

3 месяца назад

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2025-4949

3 месяца назад

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2025-4949

3 месяца назад

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2025-4949

3 месяца назад

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestP ...

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02762-1

6 дней назад

Security update for eclipse-jgit

EPSS: Низкий
github логотип

GHSA-vrpq-qp53-qv56

3 месяца назад

Eclipse JGit XML External Entity (XXE) Vulnerability

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-4949

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 9.8
0%
Низкий
3 месяца назад
redhat логотип
CVE-2025-4949

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 4.8
0%
Низкий
3 месяца назад
nvd логотип
CVE-2025-4949

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

CVSS3: 9.8
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-4949

In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestP ...

CVSS3: 9.8
0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02762-1

Security update for eclipse-jgit

0%
Низкий
6 дней назад
github логотип
GHSA-vrpq-qp53-qv56

Eclipse JGit XML External Entity (XXE) Vulnerability

0%
Низкий
3 месяца назад

Уязвимостей на страницу