VYPR
Medium severity4.7NVD Advisory· Published Dec 16, 2021· Updated Jun 17, 2026

CVE-2021-45096

CVE-2021-45096

Description

KNIME Analytics Platform before 4.5.0 is vulnerable to XXE (external XML entity injection) via a crafted workflow file (.knwf), aka AP-17730.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Knime/Analytics Platformllm-fuzzy3 versions
    <4.5.0+ 2 more
    • (no CPE)range: <4.5.0
    • (no CPE)
    • cpe:2.3:a:knime:knime_analytics_platform:*:*:*:*:*:*:*:*range: <4.5.0
  • Knime/KNIMEllm-create
    Range: <4.5.0

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.