VYPR

rpm package

opensuse/jsoup&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/jsoup&distro=openSUSE%20Tumbleweed

Vulnerabilities (2)

  • CVE-2026-75140HigAug 20, 2026
    affected < 1.23.2-1.1fixed 1.23.2-1.1

    jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource consumption vulnerability in XmlTreeBuilder that allows remote attackers to exhaust JVM heap memory by supplying a deeply nested XML document with uniquely-namespaced elements. The builder copies the

  • CVE-2021-37714HigAug 18, 2021
    affected < 1.14.2-1.2fixed 1.14.2-1.2

    jsoup is a Java library for working with HTML. Those using jsoup versions prior to 1.14.2 to parse untrusted HTML or XML may be vulnerable to DOS attacks. If the parser is run on user supplied input, an attacker may supply content that causes the parser to get stuck (loop indefin