JDOM is a Java library for parsing and manipulating XML documents, presenting a narrow but embedded attack surface through its core product. The durable signal centers on XML External Entity (XXE) reference handling, a class of weakness that arises in XML processors and can propagate to any application that consumes untrusted XML through this library. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Jdom over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-33813HIGH An XXE issue in SAXBuilder in JDOM through 2.0.6 allows attackers to cause a denial of service via a crafted HTTP request. | Jun 16, 2021 | 7.5 | 34 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Jdom.
Media articles that mention a CVE ID that affects a product developed by Jdom — matched by CVE ID, not by vendor name.