Description
Improper Restriction of XML External Entity Reference in GitHub repository detekt/detekt prior to 1.20.0.
Remediation
References
https://github.com/detekt/detekt/commit/c965a8d2a6bbdb9bcfc6acfa7bbffd3da81f5395
https://huntr.dev/bounties/23e37ba7-96d5-4037-a90a-8c8f4a70ce44
Related Vulnerabilities
CVE-2022-38749 Vulnerability in maven package org.yaml:snakeyaml
CVE-2020-10693 Vulnerability in maven package org.hibernate.validator:hibernate-validator
CVE-2022-45470 Vulnerability in maven package org.apache.hama:hama-core
CVE-2021-3795 Vulnerability in npm package semver-regex
CVE-2022-31198 Vulnerability in npm package @openzeppelin/contracts