Xmlbundle Project maintains a focused XML processing library whose vulnerability exposure centers on improper restriction of external entity references, a class of parsing-layer weaknesses. Current severity, exploitation, and exposure metrics are shown in the live-stats panel alongside this summary.
The number and severity of CVEs published that impact products developed by Xmlbundle Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-1000477HIGH XMLBundle version 0.1.7 is vulnerable to XXE attacks which can result in denial of service attacks. | Jan 3, 2018 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xmlbundle Project.
Media articles that mention a CVE ID that affects a product developed by Xmlbundle Project — matched by CVE ID, not by vendor name.