Description
XXE issue in Airsonic before 10.1.2 during parse.
Remediation
References
https://github.com/airsonic/airsonic/blob/master/CHANGELOG.md
https://github.com/airsonic/airsonic/releases/tag/v10.2.1
Related Vulnerabilities
CVE-2023-37478 Vulnerability in npm package @pnpm/macos-x64
CVE-2017-1000190 Vulnerability in maven package org.simpleframework:simple-xml
CVE-2021-41038 Vulnerability in npm package @theia/plugin-ext
CVE-2020-15813 Vulnerability in maven package org.graylog2:graylog2-server
CVE-2020-11979 Vulnerability in maven package org.apache.ant:ant