CVE Published: 18/01/2019 |
CVE Updated: 17/09/2024 |
CVE Year: 2019 Source: dell |
Vendor: Spring |
Product: Spring Web Services Status : PUBLISHED
CVE-2019-3773 Description
Spring Web Services, versions 2.4.3, 3.0.4, and older unsupported versions of all three projects, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources.