In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade silverstripe/framework to version 3.1.12 or higher.
silverstripe/framework is a PHP framework forming the base for the SilverStripe CMS.
Affected versions of this package are vulnerable to Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') via XML entity expansion. An attacker can cause denial of service by supplying specially crafted XML documents that trigger a Quadratic Blowup Attack, resulting in excessive CPU and memory consumption during XML parsing and degrading application performance.