Skip to content

Commit

Permalink
Browse files Browse the repository at this point in the history
  • Loading branch information
thomasredlin committed Oct 13, 2023
1 parent f0f5053 commit 760e0e3
Showing 1 changed file with 2 additions and 24 deletions.
Original file line number Diff line number Diff line change
@@ -1,13 +1,13 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gchv-364h-r896",
"modified": "2022-05-24T20:52:33Z",
"modified": "2023-02-01T05:02:07Z",
"published": "2022-05-06T00:00:53Z",
"aliases": [
"CVE-2022-28890"
],
"summary": "XML External Entity Reference in apache jena",
"details": "A vulnerability in the RDF/XML parser of Apache Jena allows an attacker to cause an external DTD to be retrieved. This issue affects Apache Jena version 4.4.0 and prior versions. Apache Jena 4.2.x and 4.3.x do not allow external entities.",
"details": "A vulnerability in the RDF/XML parser of Apache Jena allows an attacker to cause an external DTD to be retrieved. This issue affects Apache Jena version 4.4.0 only.",
"severity": [
{
"type": "CVSS_V3",
Expand All @@ -33,28 +33,6 @@
]
}
]
},
{
"package": {
"ecosystem": "Maven",
"name": "org.apache.jena:jena"
},
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
},
{
"fixed": "4.5.0"
}
]
}
],
"database_specific": {
"last_known_affected_version_range": "< 4.2.0"
}
}
],
"references": [
Expand Down

0 comments on commit 760e0e3

Please sign in to comment.