6.5.26
5 years ago
18 days ago
Known vulnerabilities in the ca.uhn.hapi.fhir:org.hl7.fhir.r5 package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
Affected versions of this package are vulnerable to XML External Entity (XXE) Injection via Note: This is due to an incomplete fix of CVE-2024-45294. How to fix XML External Entity (XXE) Injection? Upgrade | [,6.4.0) |
Affected versions of this package are vulnerable to XML External Entity (XXE) Injection due to allowing external How to fix XML External Entity (XXE) Injection? Upgrade | [,6.4.0) |
Affected versions of this package are vulnerable to XML External Entity (XXE) Injection via How to fix XML External Entity (XXE) Injection? Upgrade | [,6.3.21) |
Affected versions of this package are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) this is due to a bypass of CVE-2023-24057.
This issue allows a malicious actor to potentially break out of the For example, consider How to fix Arbitrary File Write via Archive Extraction (Zip Slip)? Upgrade | [,5.6.106) |