All versions of com.puppycrawl.tools:checkstyle before 8.29 are vulnerable to XML External Entity (XXE) Injection due to an incomplete fix for CVE-2019-9658.
References
Configurations
History
No history.
Information
Published : 2020-01-30 23:15
Updated : 2023-11-07 03:02
NVD link : CVE-2019-10782
Mitre link : CVE-2019-10782
CVE.ORG link : CVE-2019-10782
JSON object : View
Products Affected
checkstyle
- checkstyle
CWE
CWE-611
Improper Restriction of XML External Entity Reference