PT-2019-19782 · Checkstyle · Checkstyle

Published

2019-03-11

·

Updated

2020-10-01

·

CVE-2019-9658

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Checkstyle versions prior to 8.18
Description The issue allows Checkstyle to load external DTDs by default, which can potentially lead to denial of service attacks or the leaking of confidential information.
Recommendations For versions prior to 8.18, update to version 8.18 or later to resolve the issue.

Fix

XXE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-9658
DLA-1768-1
DLA-2099-1
GHSA-GP32-7H29-RPXM

Affected Products

Checkstyle