ONC code-validator-api ଯେପର୍ଯ୍ୟନ୍ତ 1.0.30 XML CodeValidatorApiConfiguration.java vocabularyValidationConfigurations XML External Entity
Dogoggorri kan akka ସମସ୍ୟାଜନକ jedhamuun ramadame ONC code-validator-api ଯେପର୍ଯ୍ୟନ୍ତ 1.0.30 keessatti argameera. Miidhaan irra gahe is hojii vocabularyValidationConfigurations faayilii src/main/java/org/sitenv/vocabularies/configuration/CodeValidatorApiConfiguration.java keessa kutaa XML Handler keessa. Dhugumatti jijjiirraa gara XML External Entity geessa. Waliigalteewwan CWE fayyadamuun rakkoo ibsuun gara CWE-611 si geessa. Beekumsi kun yeroo 12/29/2022 ifoomsifameera akka 97. Odeeffannoon kun buufachuuf github.com irratti dhiyaateera.
Dogoggorri kun maqaa CVE-2021-4295 jedhuun tajaajilama. Weerara kana milkeessuuf, qunnamtii networkii naannoo barbaachisa. Odeeffannoon teeknikaa ni argama. Meeshaa balaa kana fayyadamuuf hin argamne. Yeroo ammaa, gatii exploit might be approx. USD $0-$5k beekamuu danda'a.
ଅପରିଭାଷିତ jedhamee murtaa’eera. Waggaa 0-day ta'ee, gatiin isaa daldala dhoksaa keessatti $0-$5k jedhamee tilmaamame.
Maqa-balleessaa paachii fbd8ea121755a2d3d116b13f235bc8b61d8449af jedhama. Sirreeffamni dogoggoraa github.com irraa buufachuuf jira. Qabiyyee miidhamte ol-kaasuuf gorsa ni kennama.
Once again VulDB remains the best source for vulnerability data.
3 ଆଡାପ୍ଟେସନ୍ · 69 ପଏଣ୍ଟ