Home
MEDIUM: 6.8 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:NDefault status
affected
Any version before 10.0.8
affected
Description
Improper Restriction of XML External Entity Reference vulnerability in Jalios JPlatform allows XML Injection.This issue affects all versions of JPlatform 10 before 10.0.8 (SP8).
Problem types
CWE-611 Improper Restriction of XML External Entity Reference
Product status
Any version before 10.0.8
Credits
Arthur Deloffre (Vozec)
Tristan Bizien (Bizi)
References
community.jalios.com/..._893720/en/security-alert-2025-02-19
issues.jalios.com/browse/JCMS-11250
vulncheck.com/advisories/jalios-jplatform-xxe