DDMAL MEI2Volpiano 0.8.2 is vulnerable to XML External Entity (XXE), leading to a Denial of Service. This occurs due to the usage of the unsafe 'xml.etree' library to parse untrusted XML input.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-09-07T12:34:59

Updated: 2024-08-03T10:21:33.224Z

Reserved: 2022-08-01T00:00:00

Link: CVE-2022-37189

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-09-07T13:15:09.380

Modified: 2022-09-10T02:43:51.907

Link: CVE-2022-37189

cve-icon Redhat

No data.