Medium severity6.5NVD Advisory· Published Nov 12, 2019· Updated Jun 17, 2026
CVE-2014-3599
CVE-2014-3599
Description
HornetQ REST is vulnerable to XML External Entity due to insecure configuration of RestEasy
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
org.hornetq.rest:hornetq-restMaven | < 2.5.0.Beta1 | 2.5.0.Beta1 |
Affected products
3- HornetQ REST/HornetQ RESTv5Range: Fixed In Version: 2.5.0
Patches
Vulnerability mechanics
References
6- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party AdvisoryWEB
- access.redhat.com/security/cve/cve-2014-3599nvdThird Party AdvisoryWEB
- github.com/advisories/GHSA-xrh2-c3rm-35jrghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2014-3599ghsaADVISORY
- github.com/hornetq/hornetq/commit/b3a63576371828d5f8e64ba7ccbcecb1da8111d2ghsaWEB
- github.com/victims/victims-cve-db/blob/master/database/java/2014/3599.yamlghsaWEB
News mentions
0No linked articles in our index yet.