VYPR

RESTEasy

by RESTEasy

CVEs (1)

  • CVE-2026-17615HigAug 31, 2026
    risk 0.49cvss 7.5epss

    A flaw was found in RESTEasy's SourceProvider. This vulnerability allows an unauthenticated attacker to perform an unauthenticated remote file read. By sending a specially crafted XML body with a DOCTYPE declaration referencing external entities to an endpoint that accepts…