{"id":"CVE-2021-43142","aliases":[],"url":"https://o3.security/vulnerability/CVE-2021-43142","summary":"Improper Restriction of XML External Entity Reference in wutka jox","details":"An XML External Entity (XXE) vulnerability exists in wutka jox 1.16 in the readObject method in JOXSAXBeanInput.","published":"2022-04-01T00:00:45Z","modified":"2024-12-05T05:32:51.578094Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"Maven","name":"com.wutka:jox","fixedVersion":null}],"fix":null,"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-43142"},{"type":"WEB","url":"https://novysodope.github.io/2021/10/29/64"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2024-12-05T05:32:51.578094Z"}}