Description
Improper Restriction of XML External Entity Reference in GitHub repository hazelcast/hazelcast in 5.1-BETA-1.
Remediation
References
https://github.com/hazelcast/hazelcast/commit/4d6b666cd0291abd618c3b95cdbb51aa4208e748
https://huntr.dev/bounties/d63972a2-b910-480a-a86b-d1f75d24d563
Related Vulnerabilities
CVE-2022-0841 Vulnerability in npm package npm-lockfile
CVE-2022-22965 Vulnerability in maven package org.springframework:spring-webflux
CVE-2022-36097 Vulnerability in maven package org.xwiki.platform:xwiki-platform-attachment-ui
CVE-2020-28487 Vulnerability in maven package org.webjars.bowergithub.visjs:vis-timeline
CVE-2022-31190 Vulnerability in maven package org.dspace:dspace-xmlui