Description
Improper Restriction of XML External Entity Reference in GitHub repository skylot/jadx prior to 1.3.2.
Remediation
References
https://github.com/skylot/jadx/commit/d22db30166e7cb369d72be41382bb63ac8b81c52
https://huntr.dev/bounties/0d093863-29e8-4dd7-a885-64f76d50bf5e
Related Vulnerabilities
CVE-2020-15138 Vulnerability in maven package org.webjars:prismjs
CVE-2016-1000341 Vulnerability in maven package org.bouncycastle:bcprov-jdk15on
CVE-2020-8134 Vulnerability in npm package ghost
CVE-2021-21672 Vulnerability in maven package org.jenkins-ci.plugins:seleniumhtmlreport
CVE-2023-33201 Vulnerability in maven package org.bouncycastle:bcprov-ext-jdk14