Description
corenlp is vulnerable to Improper Restriction of XML External Entity Reference
Remediation
References
https://github.com/stanfordnlp/corenlp/commit/1f52136321cfca68b991bd7870563d06cf96624d
https://huntr.dev/bounties/3d7e70fe-dddd-4b79-af62-8e058c4d5763
Related Vulnerabilities
CVE-2021-21175 Vulnerability in npm package electron
CVE-2021-21366 Vulnerability in npm package xmldom
CVE-2021-23445 Vulnerability in npm package datatables.net
CVE-2019-25155 Vulnerability in maven package org.webjars.npm:dompurify
CVE-2022-24948 Vulnerability in maven package org.apache.jspwiki:jspwiki-main