Description
corenlp is vulnerable to Improper Restriction of XML External Entity Reference
Remediation
References
https://github.com/stanfordnlp/corenlp/commit/1f52136321cfca68b991bd7870563d06cf96624d
https://huntr.dev/bounties/3d7e70fe-dddd-4b79-af62-8e058c4d5763
Related Vulnerabilities
CVE-2021-23440 Vulnerability in npm package set-value
CVE-2014-9634 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2016-6797 Vulnerability in maven package tomcat:catalina
CVE-2021-22696 Vulnerability in maven package org.apache.cxf:cxf-rt-rs-security-oauth2
CVE-2022-24721 Vulnerability in maven package org.cometd.java:cometd-java-oort