Ddmal maintains a narrowly scoped product portfolio centered on mei2volpiano, a specialized tool for music notation conversion. The observed vulnerability exposure centers on XML external entity reference handling, a structural concern in tools that parse externally sourced markup formats. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ddmal over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-37189HIGH DDMAL MEI2Volpiano 0.8.2 is vulnerable to XML External Entity (XXE), leading to a Denial of Service. This occurs due to the usage of the unsafe 'xml.etree' library to parse untrust | Sep 7, 2022 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ddmal.
Media articles that mention a CVE ID that affects a product developed by Ddmal — matched by CVE ID, not by vendor name.