Description
An XML External Entity (XXE) vulnerability exists in wuta jox 1.16 in the readObject method in JOXSAXBeanInput.
Remediation
References
https://novysodope.github.io/2021/10/29/64/
Related Vulnerabilities
CVE-2022-31147 Vulnerability in maven package org.webjars:jquery-validation
CVE-2020-36184 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2019-12043 Vulnerability in maven package org.webjars.npm:remarkable
CVE-2022-31175 Vulnerability in npm package @ckeditor/ckeditor5-html-embed
CVE-2023-24057 Vulnerability in maven package ca.uhn.hapi.fhir:org.hl7.fhir.r5