Description
XXE issue in Airsonic before 10.1.2 during parse.
Remediation
References
https://github.com/airsonic/airsonic/blob/master/CHANGELOG.md
https://github.com/airsonic/airsonic/releases/tag/v10.2.1
Related Vulnerabilities
CVE-2022-31172 Vulnerability in npm package @openzeppelin/contracts
CVE-2021-41561 Vulnerability in maven package org.apache.parquet:parquet
CVE-2020-28440 Vulnerability in npm package corenlp-js-interface
CVE-2020-8131 Vulnerability in npm package yarn
CVE-2017-1000244 Vulnerability in maven package org.jvnet.hudson.plugins:favorite