VYPR
Critical severity9.8OSV Advisory· Published Jan 4, 2019· Updated Jun 17, 2026

CVE-2019-5312

CVE-2019-5312

Description

An issue was discovered in weixin-java-tools v3.3.0. There is an XXE vulnerability in the getXmlDoc method of the BaseWxPayResult.java file. NOTE: this issue exists because of an incomplete fix for CVE-2018-20318.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
com.github.binarywang:weixin-java-commonMaven
< 3.3.2.B3.3.2.B

Affected products

3

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.