Description
XXE issue in Airsonic before 10.1.2 during parse.
Remediation
References
https://github.com/airsonic/airsonic/blob/master/CHANGELOG.md
https://github.com/airsonic/airsonic/releases/tag/v10.2.1
Related Vulnerabilities
CVE-2018-1000665 Vulnerability in maven package org.webjars.bower:dojo
CVE-2022-36077 Vulnerability in maven package org.webjars.npm:electron
CVE-2022-21718 Vulnerability in npm package electron
CVE-2024-1597 Vulnerability in maven package org.postgresql:postgresql
CVE-2020-27219 Vulnerability in maven package org.eclipse.hawkbit:hawkbit-update-server