Description
Improper Restriction of XML External Entity Reference in GitHub repository hazelcast/hazelcast in 5.1-BETA-1.
Remediation
References
https://github.com/hazelcast/hazelcast/commit/4d6b666cd0291abd618c3b95cdbb51aa4208e748
https://huntr.dev/bounties/d63972a2-b910-480a-a86b-d1f75d24d563
Related Vulnerabilities
CVE-2023-26487 Vulnerability in maven package org.webjars.npm:vega
CVE-2022-2218 Vulnerability in maven package org.webjars.npm:parse-url
CVE-2021-39148 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2023-0846 Vulnerability in maven package org.opennms:opennms-webapp
CVE-2021-46708 Vulnerability in maven package org.webjars.bower:swagger-ui