Description
An XML External Entity (XXE) vulnerability exists in wuta jox 1.16 in the readObject method in JOXSAXBeanInput.
Remediation
References
https://novysodope.github.io/2021/10/29/64/
Related Vulnerabilities
CVE-2023-38905 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core
CVE-2023-48910 Vulnerability in maven package io.github.microcks:microcks
CVE-2020-35201 Vulnerability in maven package org.igniterealtime.openfire.plugins:bookmarks
CVE-2023-31719 Vulnerability in npm package @frangoteam/fuxa