CVE-2015-1819

EPSS 2.0%

Nokogiri vulnerable to libxml XML Entity Expansion

Published: 8/8/2018Modified: 4/28/2026
Also known as:GHSA-q7wx-62r7-j2x7DEBIAN-CVE-2015-1819

Description

The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expansion (XEE) attack.

Affected packages (4)

References (26)