HIGH
XML Entity Expansion (Billion Laughs Attack) on Pippo 1.12.0 results in Denial of Service.Entities are created recursively and large amounts of heap memory is taken
Published Jun 12, 2019
7.5
HIGHCVSS 3.1
EPSS 1.44%
Description
Affected products
Remediation
References (3)
Change history (0)
No recorded changes yet.