Description
SimpleXML (latest version 2.7.1) is vulnerable to an XXE vulnerability resulting SSRF, information disclosure, DoS and so on.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-3697 | SimpleXML has XML External Entity (XXE) vulnerability |
Github GHSA |
GHSA-f5qf-vh69-9q4r | SimpleXML has XML External Entity (XXE) vulnerability |
References
History
Fri, 12 Sep 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apache
Apache solr |
|
| CPEs | cpe:2.3:a:apache:solr:8.4.1:*:*:*:*:*:*:* cpe:2.3:a:simplexml_project:simplexml:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Apache
Apache solr |
|
| Metrics |
cvssV3_0
|
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T21:53:07.227Z
Reserved: 2017-11-17T00:00:00.000Z
Link: CVE-2017-1000190
No data.
Status : Analyzed
Published: 2017-11-17T21:29:00.277
Modified: 2025-09-12T20:08:07.787
Link: CVE-2017-1000190
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA