com.glazedlists:glazedlists@1.11.0 vulnerabilities

  • latest version

    1.11.0

  • first published

    7 years ago

  • latest version published

    7 years ago

  • licenses detected

  • package manager

  • Direct Vulnerabilities

    Known vulnerabilities in the com.glazedlists:glazedlists package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

    Affected versions of this package are vulnerable to Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') via the BeanXMLByteCoder.decode() parameter. When the decode() method is called, the program will call XMLDecoder.readObject() to parse the XML string without any validation.

    How to fix Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')?

    There is no fixed version for com.glazedlists:glazedlists.

    [1.11.0,)