All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allows an attacker to abuse an XPath Transform to extract any local .xml files in a RetrievalMethod element.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Atlassian Bitbucket | atlassian-bitbucket-upgrade-latest | Nov 14, 2024 | Nov 21, 2023 | |
| Debian | debian-upgrade-libxml-security-java | Sep 29, 2021 | Sep 19, 2021 | |
| Oracle Weblogic | oracle-weblogic-jul-2022-cpu-12_2_1_3_0oracle-weblogic-jul-2022-cpu-12_2_1_4_0oracle-weblogic-jul-2022-cpu-14_1_1_0_0 | Jul 25, 2022 | Sep 19, 2021 | |
| Red Hat Jboss Eap | red-hat-jboss-eap-upgrade-latest | Sep 19, 2024 | Sep 17, 2021 | |
| Ubuntu | ubuntu-upgrade-libxml-security-java | Mar 22, 2023 | Sep 19, 2021 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub