CVE-2012-0818

EPSS 1.4%

Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy

發布日:2022/5/17修改日:2024/12/3

描述

RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document, aka an XML external entity (XXE) injection attack.

受影響套件(1)

參考連結(29)