VYPR

CWE-611

Improper Restriction of XML External Entity Reference

BaseDraft

Description

The product processes an XML document that can contain XML entities with URIs that resolve to documents outside of the intended sphere of control, causing the product to embed incorrect documents into its output.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-221

CVEs mapped to this weakness (1,374)

page 62 of 69
  • CVE-2024-6961MedJul 21, 2024
    risk 0.31cvss 5.9epss 0.00

    RAIL documents are an XML-based format invented by Guardrails AI to enforce formatting checks on LLM outputs. Guardrails users that consume RAIL documents from external sources are vulnerable to XXE, which may cause leakage of internal file data via the SYSTEM entity.

  • CVE-2023-23926MedFeb 16, 2023
    risk 0.31cvss 5.9epss 0.01

    APOC (Awesome Procedures on Cypher) is an add-on library for Neo4j. An XML External Entity (XXE) vulnerability found in the apoc.import.graphml procedure of APOC core plugin prior to version 5.5.0 and 4.4.0.14 (4.4 branch) in Neo4j graph database. XML External Entity (XXE)…

  • CVE-2021-45096MedDec 16, 2021
    risk 0.31cvss 4.7epss 0.01

    KNIME Analytics Platform before 4.5.0 is vulnerable to XXE (external XML entity injection) via a crafted workflow file (.knwf), aka AP-17730.

  • CVE-2020-25817MedJun 8, 2021
    risk 0.31cvss 4.8epss 0.01

    SilverStripe through 4.6.0-rc1 has an XXE Vulnerability in CSSContentParser. A developer utility meant for parsing HTML within unit tests can be vulnerable to XML External Entity (XXE) attacks. When this developer utility is misused for purposes involving external or user…

  • CVE-2019-2861MedJul 23, 2019
    risk 0.31cvss 4.2epss 0.04

    Vulnerability in the Oracle Hyperion Planning component of Oracle Hyperion (subcomponent: Security). The supported version that is affected is 11.1.2.4. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Hyperion…

  • CVE-2018-6225MedMar 15, 2018
    risk 0.31cvss 4.3epss 0.04

    An XML external entity injection (XXE) vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an authenticated user to expose a normally protected configuration script.

  • CVE-2025-20369MedOct 1, 2025
    risk 0.30cvss 4.6epss 0.00

    In Splunk Enterprise versions below 9.4.4, 9.3.6, and 9.2.8, and Splunk Cloud Platform versions below 9.3.2411.108, 9.3.2408.118 and 9.2.2406.123, a low privilege user that does not hold the "admin" or "power" Splunk roles could perform an extensible markup language (XML)…

  • CVE-2024-9044MedNov 29, 2024
    risk 0.30cvss —epss 0.00

    A XML External Entity (XXE) vulnerability has been identified in Easy Tax Client Software 2023 1.2 and earlier across multiple platforms, including Windows, Linux, and macOS.

  • CVE-2023-6149MedJan 9, 2024
    risk 0.30cvss 5.7epss 0.00

    Qualys Jenkins Plugin for WAS prior to version and including 2.0.11 was identified to be affected by a security flaw, which was missing a permission check while performing a connectivity check to Qualys Cloud Services. This allowed any user with login access to configure or…

  • CVE-2026-44018MedJun 26, 2026
    risk 0.29cvss 5.5epss 0.00

    Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.45.0 until 2.91.0, the METS-GBS backend's XML parsing and the input document format detection lacked security controls. An attacker could craft…

  • CVE-2025-49539MedJul 8, 2025
    risk 0.29cvss 4.5epss 0.00

    ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Improper Restriction of XML External Entity Reference ('XXE') vulnerability that could result in a security feature bypass. A high-privileged attacker could leverage this vulnerability to access…

  • CVE-2025-27136MedMar 10, 2025
    risk 0.29cvss —epss 0.01

    LocalS3 is an Amazon S3 mock service for testing and local development. Prior to version 1.21, the LocalS3 service's bucket creation endpoint is vulnerable to XML External Entity (XXE) injection. When processing the CreateBucketConfiguration XML document during bucket creation,…

  • CVE-2015-10082MedFeb 21, 2023
    risk 0.29cvss 5.5epss 0.01

    A vulnerability classified as problematic has been found in UIKit0 libplist 1.12. This affects the function plist_from_xml of the file src/xplist.c of the component XML Handler. The manipulation leads to xml external entity reference. The patch is named…

  • CVE-2014-125087MedFeb 19, 2023
    risk 0.29cvss 5.5epss 0.01

    A vulnerability was found in java-xmlbuilder up to 1.1. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to xml external entity reference. Upgrading to version 1.2 is able to address this issue. The name of the patch…

  • CVE-2015-10029MedJan 7, 2023
    risk 0.29cvss 5.5epss 0.01

    A vulnerability classified as problematic was found in kelvinmo simplexrd up to 3.1.0. This vulnerability affects unknown code of the file simplexrd/simplexrd.class.php. The manipulation leads to xml external entity reference. Upgrading to version 3.1.1 is able to address this…

  • CVE-2016-15011MedJan 6, 2023
    risk 0.29cvss 5.5epss 0.01

    A vulnerability classified as problematic was found in e-Contract dssp up to 1.3.1. Affected by this vulnerability is the function checkSignResponse of the file dssp-client/src/main/java/be/e_contract/dssp/client/SignResponseVerifier.java. The manipulation leads to xml external…

  • CVE-2020-36641MedJan 5, 2023
    risk 0.29cvss 5.5epss 0.01

    A vulnerability classified as problematic was found in gturri aXMLRPC up to 1.12.0. This vulnerability affects the function ResponseParser of the file src/main/java/de/timroes/axmlrpc/ResponseParser.java. The manipulation leads to xml external entity reference. Upgrading to…

  • CVE-2020-36640MedJan 5, 2023
    risk 0.29cvss 5.5epss 0.01

    A vulnerability, which was classified as problematic, was found in bonitasoft bonita-connector-webservice up to 1.3.0. This affects the function TransformerConfigurationException of the file src/main/java/org/bonitasoft/connectors/ws/SecureWSConnector.java. The manipulation…

  • CVE-2017-20151MedDec 30, 2022
    risk 0.29cvss 5.5epss 0.01

    A vulnerability classified as problematic was found in iText RUPS. This vulnerability affects unknown code of the file src/main/java/com/itextpdf/rups/model/XfaFile.java. The manipulation leads to xml external entity reference. The patch is identified as…

  • CVE-2022-0219MedJan 20, 2022
    risk 0.29cvss 5.5epss 0.01

    Improper Restriction of XML External Entity Reference in GitHub repository skylot/jadx prior to 1.3.2.