Description
corenlp is vulnerable to Improper Restriction of XML External Entity Reference
Remediation
References
https://github.com/stanfordnlp/corenlp/commit/1f52136321cfca68b991bd7870563d06cf96624d
https://huntr.dev/bounties/3d7e70fe-dddd-4b79-af62-8e058c4d5763
Related Vulnerabilities
CVE-2023-3990 Vulnerability in maven package net.mingsoft:ms-mcms
CVE-2021-4264 Vulnerability in npm package dustjs-linkedin
CVE-2022-24846 Vulnerability in maven package org.geowebcache:gwc-diskquota-jdbc
CVE-2022-29078 Vulnerability in maven package org.webjars.npm:ejs
CVE-2018-20677 Vulnerability in maven package org.webjars.bowergithub.twbs:bootstrap