Description
corenlp is vulnerable to Improper Restriction of XML External Entity Reference
Remediation
References
https://github.com/stanfordnlp/corenlp/commit/1940ffb938dc4f3f5bc5f2a2fd8b35aabbbae3dd
https://huntr.dev/bounties/a717aec2-5646-4a5f-ade0-dadc25736ae3
Related Vulnerabilities
CVE-2020-28459 Vulnerability in npm package markdown-it-decorate
CVE-2023-44487 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2017-1000491 Vulnerability in npm package shiba
CVE-2022-24718 Vulnerability in npm package @finastra/ssr-pages
CVE-2014-0193 Vulnerability in maven package org.onosproject:onlab-stc