https://advisories.gitlab.com/composer/simplesamlphp/simplesamlphp/GHSA-j5g2-q29x-cw3h/
SimpleSAMLphp vulnerable to XXE in parsing SAML messages | GitLab Advisory Database (GLAD)
GHSA-j5g2-q29x-cw3h SimpleSAMLphp vulnerable to XXE in parsing SAML messages: When loading an (untrusted) XML document, for example the SAMLResponse, it's...
https://www.eclipse.org/lists/lyo-dev/msg01324.html
Re: [lyo-dev] CVE-2021-39239: Apache Jena: XML External Entity (XXE) vul
https://advisories.gitlab.com/composer/phpoffice/phpspreadsheet/CVE-2018-19277/
XXE in PHPSpreadsheet due to encoding issue | GitLab Advisory Database (GLAD)
CVE-2018-19277 XXE in PHPSpreadsheet due to encoding issue: securityScan() in PHPOffice PhpSpreadsheet through 1.5.0 allows a bypass of protection mechanisms...
due toxxe
https://applicationsecurityauthority.com/xml-security-vulnerabilities/
XML Security Vulnerabilities (XXE, XPath Injection)
XML-based attack vectors represent a persistent class of application-layer vulnerabilities that target the parsing and querying of structured data. This page...
security vulnerabilitiesxmlxxexpathinjection
https://docs.cloud.google.com/java/docs/reference/google-cloud-websecurityscanner/latest/com.google.cloud.websecurityscanner.v1.Xxe.Builder
Class Xxe.Builder (2.91.0) | Java client libraries | Google Cloud Documentation
https://web-in-security.blogspot.com/2014/11/detecting-and-exploiting-xxe-in-saml.html
On Web-Security and -Insecurity: Detecting and exploiting XXE in SAML Interfaces
This post will describe some findings, problems and inisghts regarding XML External Entity Attacks (XXEA) that we gathered during a large-sc...
on websecurity
https://advisories.gitlab.com/maven/org.jenkins-ci/update-center2/CVE-2022-45397/
XXE vulnerability on agents in Jenkins OSF Builder Suite : : XML Linter Plugin | GitLab Advisory...
CVE-2022-45397 XXE vulnerability on agents in Jenkins OSF Builder Suite : : XML Linter Plugin: OSF Builder Suite : : XML Linter 1.0.2 and earlier does not...
https://advisories.gitlab.com/maven/ome/pom-bio-formats/CVE-2026-22186/
Bio-Formats has an XML External Entity (XXE) vulnerability | GitLab Advisory Database (GLAD)
CVE-2026-22186 Bio-Formats has an XML External Entity (XXE) vulnerability: Bio-Formats versions up to and including 8.3.0 contain an XML External Entity (XXE)...
https://advisories.gitlab.com/composer/simplesamlphp/saml2/CVE-2024-52596/
SimpleSAMLphp xml-common XXE vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-52596 SimpleSAMLphp xml-common XXE vulnerability: When loading an (untrusted) XML document, for example the SAMLResponse, it's possible to induce an...
simplesamlphpxmlcommonxxevulnerability
https://advisories.gitlab.com/maven/org.lucee/lucee/CVE-2023-38693/
Lucee RCE/XXE Vulnerability | GitLab Advisory Database (GLAD)
CVE-2023-38693 Lucee RCE/XXE Vulnerability: The Lucee team received a responsible disclosure of a security vulnerability which affects all previous releases of...
luceercexxevulnerabilitygitlab
https://wondercom.info/
WonderCom.info - "La publicité, c'est la plus grande forme d'art du XXe siècle." - Marshall McLuhan
"La publicité, c'est la plus grande forme d'art du XXe siècle." - Marshall McLuhan
https://www.eclipse.org/lists/lyo-dev/msg01326.html
Re: [lyo-dev] CVE-2021-39239: Apache Jena: XML External Entity (XXE) vul
https://advisories.gitlab.com/pypi/pyamf/CVE-2015-8549/
PyAMF vulnerable to XML external entity (XXE) | GitLab Advisory Database (GLAD)
CVE-2015-8549 PyAMF vulnerable to XML external entity (XXE): PyAMF provides Action Message Format (AMF) support for Python that is compatible with the Adobe...
vulnerablexmlexternal
https://advisories.gitlab.com/composer/zendframework/zendservice-windowsazure/CVE-2014-2681/
Several Zend Products Vulnerable to XXE and XEE attacks | GitLab Advisory Database (GLAD)
CVE-2014-2681 Several Zend Products Vulnerable to XXE and XEE attacks: Zend Framework 1 (ZF1) before 1.12.4, Zend Framework 2 before 2.1.6 and 2.2.x before...
https://csbygb.gitbook.io/pentips/web-pentesting/webvulns/xxe
XXE | CSbyGB - Pentips
xxe
https://advisories.gitlab.com/maven/ca.uhn.hapi.fhir/org.hl7.fhir.r4b/CVE-2024-51132/
HAPI FHIR XML External Entity (XXE) vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-51132 HAPI FHIR XML External Entity (XXE) vulnerability: An XML External Entity (XXE) vulnerability in HAPI FHIR before v6.4.0 allows attackers to...
hapi fhirxmlexternalentity
https://advisories.gitlab.com/composer/magento/community-edition/CVE-2024-34102/
Magento Open Source affected by an Improper Restriction of XML External Entity Reference ('XXE')...
CVE-2024-34102 Magento Open Source affected by an Improper Restriction of XML External Entity Reference ('XXE') vulnerability: Adobe Commerce versions 2.4.7,...
magento open source
https://advisories.gitlab.com/maven/ca.uhn.hapi.fhir/org.hl7.fhir.r4/CVE-2024-52007/
XXE vulnerability in XSLT parsing in `org.hl7.fhir.core` | GitLab Advisory Database (GLAD)
CVE-2024-52007 XXE vulnerability in XSLT parsing in `org.hl7.fhir.core`: XSLT parsing performed by various components are vulnerable to XML external entity...
https://www.christies.com/en/lot/lot-6065609
PAIRE DE CONSOLES DE STYLE LOUIS XVI, XXe SIECLE | Christie's
style louis xvipairedeconsolesxxe
https://xapax.github.io/security/attacking_web_applications/xml_external_entity_attack/
XML External Entity (XXE) - Notes
xmlexternalentityxxenotes
https://wiki.unece.org/pages/worddav/preview.action?fileName=VRU-Proxi-33-08+%28UK%29+GRSG-127-XXe+April+2024+direct+vision.pdf&pageId=237404175
VRU-Proxi-33-08 (UK) GRSG-127-XXe April 2024 direct vision.pdf - Transport - Vehicle Regulations -...
https://www.eclipse.org/lists/pdt-dev/msg03527.html
Re: [pdt-dev] XXE in PDT
pdtdevxxe
https://advisories.gitlab.com/maven/org.neo4j.procedure/apoc-core/CVE-2023-23926/
XML External Entity (XXE) vulnerability in apoc.import.graphml | GitLab Advisory Database (GLAD)
CVE-2023-23926 XML External Entity (XXE) vulnerability in apoc.import.graphml: APOC (Awesome Procedures on Cypher) is an add-on library for Neo4j. An XML...
https://advisories.gitlab.com/maven/org.verapdf/verapdf-library/CVE-2024-52800/
veraPDF CLI has potential XXE (XML External Entity Injection) vulnerability | GitLab Advisory...
CVE-2024-52800 veraPDF CLI has potential XXE (XML External Entity Injection) vulnerability: Executing policy checks using custom schematron files via the CLI...
xml external entity injection
https://portswigger.net/web-security/xxe
What is XXE (XML external entity) injection? Tutorial & Examples | Web Security Academy
In this section, we'll explain what XML external entity injection is, describe some common examples, explain how to find and exploit various kinds of XXE ...
xml external entity injectionwhat is
https://advisories.gitlab.com/composer/getgrav/grav/GHSA-3446-6mgw-f79p/
Grav is Vulnerable to XXE via SVG Upload | GitLab Advisory Database (GLAD)
GHSA-3446-6mgw-f79p Grav is Vulnerable to XXE via SVG Upload : Dear Grav Security Team, A security vulnerability was discovered in Grav CMS that allows...
https://suzannemartha.archipop.org/
Photothèque du XXe siècle des Hauts-de-France - Suzanne & Martha
Illustrez vos créations avec la banque de photogrammes d’archives des Hauts-de-France
hauts de franceduxxedessuzanne
https://advisories.gitlab.com/composer/phpoffice/phpexcel/CVE-2024-48917/
XXE in PHPSpreadsheet's XLSX reader | GitLab Advisory Database (GLAD)
CVE-2024-48917 XXE in PHPSpreadsheet's XLSX reader: The XmlScanner class has a scan method which should prevent XXE attacks. However, we found another bypass...
xxexlsxreadergitlabadvisory
https://advisories.gitlab.com/composer/typo3/cms/GHSA-qffc-gwpp-m2xr/
XML External Entity (XXE) Processing in TYPO3 Core | GitLab Advisory Database (GLAD)
GHSA-qffc-gwpp-m2xr XML External Entity (XXE) Processing in TYPO3 Core: All XML processing within the TYPO3 CMS are vulnerable to XEE processing. This can lead...
https://advisories.gitlab.com/composer/phpoffice/phpexcel/CVE-2024-45048/
XXE in PHPSpreadsheet encoding is returned | GitLab Advisory Database (GLAD)
CVE-2024-45048 XXE in PHPSpreadsheet encoding is returned: Bypassing the filter allows a XXE-attack. Which is turn allows attacker to obtain contents of local...
xxeencodingreturnedgitlabadvisory
https://advisories.gitlab.com/pypi/modoboa-dmarc/CVE-2019-19702/
Modoboa is vulnerable to an XML External Entity Injection (XXE) | GitLab Advisory Database (GLAD)
CVE-2019-19702 Modoboa is vulnerable to an XML External Entity Injection (XXE): The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External...
xml external entity injection
https://www.archi20-21.fr/
OBSERVATOIRE archi20-21 : intervenir sur l'architecture du XXe
observatoireintervenirsurlarchitecture
https://advisories.gitlab.com/maven/org.apache.tika/tika-parsers/CVE-2025-66516/
Apache Tika has XXE vulnerability | GitLab Advisory Database (GLAD)
CVE-2025-66516 Apache Tika has XXE vulnerability: Critical XXE in Apache Tika tika-core (1.13-3.2.1), tika-pdf-module (2.0.0-3.2.1) and tika-parsers...
apache tikaxxevulnerabilitygitlabadvisory
https://advisories.gitlab.com/maven/org.geotools/gt-xsd-core/GHSA-826p-4gcg-35vw/
GeoTools has XML External Entity (XXE) Processing Vulnerability in XSD schema handling | GitLab...
GHSA-826p-4gcg-35vw GeoTools has XML External Entity (XXE) Processing Vulnerability in XSD schema handling: GeoTools Schema class use of Eclipse XSD library to...
https://lists.w3.org/Archives/Public/www-tag/2002Oct/0303.html
Re: Possible issue: XXE (Xml eXternal Entity) attack from Rick Jelliffe on 2002-10-30...
https://advisories.gitlab.com/maven/org.geonetwork-opensource/gn-wfsfeature-harvester/GHSA-2p76-gc46-5fvc/
GeoNetwork affected by XML External Entity (XXE) processing vulnerability in WFS indexing REST API...
GHSA-2p76-gc46-5fvc GeoNetwork affected by XML External Entity (XXE) processing vulnerability in WFS indexing REST API endpoint: GeoNetwork WFS Index...
https://www.ericlefevre-expert.fr/
Eric Lefevre Expert - Achat Vente Courtage - Tableaux XIXe XXe - Objets de sport - Peintres Normands
Toutes les actualités des ventes et des expositions organisées par Eric Lefèvre, Expert en Tableaux du XIX et du XXe - Objets de Sports.
https://advisories.gitlab.com/composer/zendframework/zendopenid/CVE-2014-2683/
Several Zend Products Vulnerable to XXE and XEE attacks | GitLab Advisory Database (GLAD)
CVE-2014-2683 Several Zend Products Vulnerable to XXE and XEE attacks: Zend Framework 1 (ZF1) before 1.12.4, Zend Framework 2 before 2.1.6 and 2.2.x before...
https://fahmifj.github.io/tags/xxe/
Xxe | Ef's log
Infosec, CTF write-ups, and other IT related stuff
xxeeflog
https://advisories.gitlab.com/composer/simplesamlphp/xml-security/CVE-2024-52596/
SimpleSAMLphp xml-common XXE vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-52596 SimpleSAMLphp xml-common XXE vulnerability: When loading an (untrusted) XML document, for example the SAMLResponse, it's possible to induce an...
simplesamlphpxmlcommonxxevulnerability
https://advisories.gitlab.com/maven/org.verapdf/core/CVE-2024-52800/
veraPDF CLI has potential XXE (XML External Entity Injection) vulnerability | GitLab Advisory...
CVE-2024-52800 veraPDF CLI has potential XXE (XML External Entity Injection) vulnerability: Executing policy checks using custom schematron files via the CLI...
xml external entity injection
https://advisories.gitlab.com/composer/phpoffice/phpexcel/CVE-2024-47873/
XmlScanner bypass leads to XXE | GitLab Advisory Database (GLAD)
CVE-2024-47873 XmlScanner bypass leads to XXE: The XmlScanner class has a scan method which should prevent XXE attacks. However, the regexes used in the scan...
bypassleadsxxegitlabadvisory
https://elogedelart.canalblog.com/tag/xviiie-xxe%20dynastie/
xviiie-xxe dynastie - Eloge de l'Art par Alain Truong
"Art is the most intense mode of individualism that the world has known." Oscar Wilde
de lxviiiexxedynastieeloge
https://advisories.gitlab.com/composer/simplesamlphp/xml-common/CVE-2024-52806/
SimpleSAMLphp SAML2 has an XXE in parsing SAML messages | GitLab Advisory Database (GLAD)
CVE-2024-52806 SimpleSAMLphp SAML2 has an XXE in parsing SAML messages: When loading an (untrusted) XML document, for example the SAMLResponse, it's possible...
https://advisories.gitlab.com/maven/org.xwiki.contrib.jira/jira-macro-default/CVE-2025-31487/
The XWiki JIRA extension allows data leak through an XXE attack by using a fake JIRA server |...
CVE-2025-31487 The XWiki JIRA extension allows data leak through an XXE attack by using a fake JIRA server: If the JIRA macro is installed, any logged in XWiki...
https://advisories.gitlab.com/maven/com.liferay.portal/release.portal.bom/CVE-2024-25606/
Liferay Portal has an XXE vulnerability in Java2WsddTask._format | GitLab Advisory Database (GLAD)
CVE-2024-25606 Liferay Portal has an XXE vulnerability in Java2WsddTask._format: XXE vulnerability in Liferay Portal 7.2.0 through 7.4.3.7, and older...
https://advisories.gitlab.com/composer/phpoffice/phpexcel/CVE-2015-3542/
PHPExcel XXE Vulnerability | GitLab Advisory Database (GLAD)
CVE-2015-3542 PHPExcel XXE Vulnerability: PHPExcel XXE Vulnerability
phpexcelxxevulnerabilitygitlabadvisory
https://advisories.gitlab.com/maven/org.apache.syncope.client.idrepo/syncope-client-idrepo-console/CVE-2026-23795/
Apache Syncope: Console XXE on Keymaster parameters | GitLab Advisory Database (GLAD)
CVE-2026-23795 Apache Syncope: Console XXE on Keymaster parameters: Improper Restriction of XML External Entity Reference vulnerability in Apache Syncope...
apache syncopeconsolexxe
https://www.broadcom.com/support/security-center/protection-bulletin/cve-2025-58360-osgeo-geoserver-xml-external-entity-xxe-vulnerability
CVE-2025-58360 - OSGeo GeoServer XML External Entity (XXE) vulnerability
CVE-2025-58360 is a critical (CVSS score 9.8) XML External Entity (XXE) vulnerability affecting GeoServer, an open-source software server written in Java that...
cveosgeogeoserverxmlexternal
https://advisories.gitlab.com/maven/org.geoserver/gs-wfs/CVE-2025-30220/
[XBOW-025-068] XML External Entity (XXE) Processing Vulnerability in GeoServer WFS Service | GitLab...
CVE-2025-30220 [XBOW-025-068] XML External Entity (XXE) Processing Vulnerability in GeoServer WFS Service: GeoServer Web Feature Service (WFS) web service was...
https://advisories.gitlab.com/pypi/langchain-text-splitters/CVE-2025-6985/
LangChain Text Splitters is vulnerable to XML External Entity (XXE) attacks due to unsafe XSLT...
CVE-2025-6985 LangChain Text Splitters is vulnerable to XML External Entity (XXE) attacks due to unsafe XSLT parsing: The HTMLSectionSplitter class in...
https://advisories.gitlab.com/composer/zendframework/zend-xmlrpc/GHSA-f4fj-q6m4-cc52/
ZendFramework vulnerable to XXE/XEE attacks | GitLab Advisory Database (GLAD)
GHSA-f4fj-q6m4-cc52 ZendFramework vulnerable to XXE/XEE attacks: Numerous components utilizing PHP's DOMDocument, SimpleXML, and xml_parse functionality are...
zendframeworkvulnerablexxexeeattacks
https://advisories.gitlab.com/maven/de.gematik.refv.commons/commons/CVE-2024-46984/
Gematik Referenzvalidator has an XXE vulnerability that can lead to a Server Side Request Forgery...
CVE-2024-46984 Gematik Referenzvalidator has an XXE vulnerability that can lead to a Server Side Request Forgery attack: The profile location routine in the...
https://advisories.gitlab.com/maven/org.apache.xmlgraphics/fop-core/CVE-2024-28168/
Apache XML Graphics FOP XML External Entity Reference ('XXE') vulnerability | GitLab Advisory...
CVE-2024-28168 Apache XML Graphics FOP XML External Entity Reference ('XXE') vulnerability: Improper Restriction of XML External Entity Reference ('XXE')...
entity referenceapachexmlgraphicsfop
https://advisories.gitlab.com/maven/org.geoserver.web/gs-web-app/CVE-2025-30220/
[XBOW-025-068] XML External Entity (XXE) Processing Vulnerability in GeoServer WFS Service | GitLab...
CVE-2025-30220 [XBOW-025-068] XML External Entity (XXE) Processing Vulnerability in GeoServer WFS Service: GeoServer Web Feature Service (WFS) web service was...
https://advisories.gitlab.com/maven/org.http4k/http4k-format-xml/CVE-2024-55875/
http4k has a potential XXE (XML External Entity Injection) vulnerability | GitLab Advisory Database...
CVE-2024-55875 http4k has a potential XXE (XML External Entity Injection) vulnerability: Short summary of the problem. Make the impact and severity as clear as...
xml external entity injection
https://wiki.unece.org/pages/worddav/preview.action?fileName=GRE-89-XXe+%28IWG+EMC%29+Proposal+for+Amendments+to+GRE-2023-27.docx&pageId=215679775
GRE-89-XXe (IWG EMC) Proposal for Amendments to GRE-2023-27.docx - Transport - Vehicle Regulations...
https://advisories.gitlab.com/maven/org.geotools/gt-wfs-ng/GHSA-826p-4gcg-35vw/
GeoTools has XML External Entity (XXE) Processing Vulnerability in XSD schema handling | GitLab...
GHSA-826p-4gcg-35vw GeoTools has XML External Entity (XXE) Processing Vulnerability in XSD schema handling: GeoTools Schema class use of Eclipse XSD library to...
https://advisories.gitlab.com/maven/io.qameta.allure.plugins/junit-xml-plugin/CVE-2025-52888/
Allure Report allows Improper XXE Restriction via DocumentBuilderFactory | GitLab Advisory Database...
CVE-2025-52888 Allure Report allows Improper XXE Restriction via DocumentBuilderFactory: A critical XML External Entity (XXE) vulnerability exists in the...
allure reportallowsimproperxxe
https://www.xxe.sh/
xxe.sh || OOB XXE tool
xxeshoobtool
https://chastel-marechal.com/
Galerie Chastel-Maréchal - Arts Décoratifs du XXe siècle
Mar 28, 2026 - Galerie présentant des œuvres de Line Vautrin, Jean Royère, André Arbus, Serge Roche ou Alberto Giacometti.
galeriechastelartsduxxe
https://advisories.gitlab.com/maven/org.verapdf/core-jakarta/CVE-2024-52800/
veraPDF CLI has potential XXE (XML External Entity Injection) vulnerability | GitLab Advisory...
CVE-2024-52800 veraPDF CLI has potential XXE (XML External Entity Injection) vulnerability: Executing policy checks using custom schematron files via the CLI...
xml external entity injection
https://advisories.gitlab.com/maven/io.openremote/openremote-manager/GHSA-g24f-mgc3-jwwc/
OpenRemote has XXE in Velbus Asset Import | GitLab Advisory Database (GLAD)
GHSA-g24f-mgc3-jwwc OpenRemote has XXE in Velbus Asset Import: The Velbus asset import path parses attacker-controlled XML without explicit XXE hardening. An...
openremotexxevelbus
https://advisories.gitlab.com/maven/org.apache.tiles/tiles-core/CVE-2023-49735/
Apache Tiles: Unvalidated input may lead to path traversal and XXE | GitLab Advisory Database (GLAD)
CVE-2023-49735 Apache Tiles: Unvalidated input may lead to path traversal and XXE: The value set as the DefaultLocaleResolver.LOCALE_KEY attribute on the...
https://elogedelart.canalblog.com/tag/xixe-xxe%20siecle/
xixe-xxe siecle - Eloge de l'Art par Alain Truong
"Art is the most intense mode of individualism that the world has known." Oscar Wilde
de lxixexxesiecleeloge
https://advisories.gitlab.com/maven/org.eclipse.jgit/org.eclipse.jgit/CVE-2025-4949/
Eclipse JGit XML External Entity (XXE) Vulnerability | GitLab Advisory Database (GLAD)
CVE-2025-4949 Eclipse JGit XML External Entity (XXE) Vulnerability: In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by...
eclipsejgitxmlexternalentity
https://musees-nationaux-alpesmaritimes.fr/fr
| Musées nationaux du XXe siècle des Alpes-Maritimes
nationauxduxxedesalpes
https://galerieyvanroyer.fr/
Galerie Yvan Royer – Arts décoratifs du XXe siècle – Art contemporain
galerieyvanroyerarts
https://advisories.gitlab.com/composer/phpoffice/phpspreadsheet/CVE-2024-47873/
XmlScanner bypass leads to XXE | GitLab Advisory Database (GLAD)
CVE-2024-47873 XmlScanner bypass leads to XXE: The XmlScanner class has a scan method which should prevent XXE attacks. However, the regexes used in the scan...
bypassleadsxxegitlabadvisory
https://glustin.net/
Galerie Glustin — Mobilier XXe & créations contemporaines
Galerie Glustin — mobilier d'exception du XXe siècle et créations contemporaines pour architectes, designers et collectionneurs.
galeriemobilierxxecontemporaines
https://fr.theorychina.org.cn/c/2022-10-23/1450620.shtml
Résolution du XXe Congrès du Parti communiste chinois sur le rapport d'activité du XIXe Comité...
https://advisories.gitlab.com/composer/zendframework/zendframework1/GHSA-229x-22xc-2f2w/
Zendframework Local file disclosure via XXE injection in Zend_XmlRpc | GitLab Advisory Database...
GHSA-229x-22xc-2f2w Zendframework Local file disclosure via XXE injection in Zend_XmlRpc: Zend_XmlRpc is vulnerable to XML eXternal Entity (XXE) Injection...
https://advisories.gitlab.com/composer/phpoffice/phpexcel/CVE-2024-45293/
XXE in PHPSpreadsheet's XLSX reader | GitLab Advisory Database (GLAD)
CVE-2024-45293 XXE in PHPSpreadsheet's XLSX reader: The security scanner responsible for preventing XXE attacks in the XLSX reader can be bypassed by slightly...
xxexlsxreadergitlabadvisory
https://mangin2marrakech.canalblog.com/
MANGIN@MARRAKECH - Blog des marrakchis du XXe siècle : aux temps de l'avenue Mangin devenue...
Blog des marrakchis du XXe siècle : aux temps de l'avenue Mangin devenue boulevard Mohamed V, du camp Mangin devenu camp de l'armée royale et du lycée Mangin...
https://advisories.gitlab.com/composer/kimai/kimai/GHSA-534c-hcr7-67jg/
Kimai has an XXE Leading to Local File Read | GitLab Advisory Database (GLAD)
GHSA-534c-hcr7-67jg Kimai has an XXE Leading to Local File Read: Kimai uses PHPSpreadsheet for importing and exporting invoices. Recently, a CVE was identified...
https://wiki.unece.org/pages/worddav/preview.action?fileName=VRU-Proxi-33-06+%28UK%29+GRSG-127-XXe+April+2024+direct+vision+-+Discussion+doc+for+VRU-Proxi.docx&pageId=237404175
VRU-Proxi-33-06 (UK) GRSG-127-XXe April 2024 direct vision - Discussion doc for VRU-Proxi.docx -...
https://www.misspagaille.com/
Brocante de vaisselle, déco, mobilier vintage et design du XXe
Dec 29, 2023 - Brocante Annecy et brocante en ligne : vaisselle ancienne, luminaires, déco vintage, mobilier de ferme, chaises bistrot, design du 20e...
mobilier vintagebrocantedevaisselleet
https://www.christies.com/en/lot/lot-6114318
PAIRE DE BICHES MODERNES, SECONDE MOITIE DU XXe SIECLE | Christie's
SECONDE MOITIE DU XXe SIECLE
pairedebiches
https://advisories.gitlab.com/maven/ca.uhn.hapi.fhir/org.hl7.fhir.r4b/CVE-2024-52007/
XXE vulnerability in XSLT parsing in `org.hl7.fhir.core` | GitLab Advisory Database (GLAD)
CVE-2024-52007 XXE vulnerability in XSLT parsing in `org.hl7.fhir.core`: XSLT parsing performed by various components are vulnerable to XML external entity...
https://advisories.gitlab.com/maven/ca.uhn.hapi.fhir/org.hl7.fhir.r5/CVE-2024-45294/
XXE vulnerability in XSLT transforms in `org.hl7.fhir.core` | GitLab Advisory Database (GLAD)
CVE-2024-45294 XXE vulnerability in XSLT transforms in `org.hl7.fhir.core`: XSLT transforms performed by various components are vulnerable to XML external...
https://www.abebooks.com/Homage-Yacov-Agam-Xxe-siecle-Lithographs/31079687382/bd
Homage to Yacov Agam, Xxe siecle, 2 Lithographs by G. Di San Lazzaro: Fine Hardcover (1972) | Fine...
Hardcover - Tudor, New York - 1972 - Condition: Fine - Fine - Homage to Yaacov Agam, XX siecle san Lazaro, published by Tudor Publisher New York 1972. Contains...
https://advisories.gitlab.com/gem/svg_optimizer/CVE-2023-46035/
svg_optimizer rubygem external XML entity (XXE) vulnerability | GitLab Advisory Database (GLAD)
CVE-2023-46035 svg_optimizer rubygem external XML entity (XXE) vulnerability: An issue in Fnando svg_optimizer v.0.2.6 allows a remote attacker to escalate...
svg optimizer
https://advisories.gitlab.com/maven/org.wso2.carbon.mediation/org.wso2.carbon.localentry/CVE-2025-10713/
WSO2 Carbon Mediation vulnerable to XML External Entity (XXE) attacks | GitLab Advisory Database...
CVE-2025-10713 WSO2 Carbon Mediation vulnerable to XML External Entity (XXE) attacks: An XML External Entity (XXE) vulnerability exists in multiple WSO2...
https://advisories.gitlab.com/maven/ca.uhn.hapi.fhir/org.hl7.fhir.utilities/CVE-2024-51132/
HAPI FHIR XML External Entity (XXE) vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-51132 HAPI FHIR XML External Entity (XXE) vulnerability: An XML External Entity (XXE) vulnerability in HAPI FHIR before v6.4.0 allows attackers to...
hapi fhirxmlexternalentity
https://advisories.gitlab.com/composer/simplesamlphp/saml2-legacy/CVE-2024-52806/
SimpleSAMLphp SAML2 has an XXE in parsing SAML messages | GitLab Advisory Database (GLAD)
CVE-2024-52806 SimpleSAMLphp SAML2 has an XXE in parsing SAML messages: Summary When loading an (untrusted) XML document, for example the SAMLResponse, it's...
https://www.librairie-escurial.com/
Librairie de l'Escurial : Littérature moderne & les Avant-gardes XXe
Découvrez des livres uniques, échangez avec des passionnés de littérature et profitez de conseils d’experts en livres rares.
de llibrairieescurialmoderneles
https://advisories.gitlab.com/maven/ca.uhn.hapi.fhir/org.hl7.fhir.dstu3/CVE-2024-45294/
XXE vulnerability in XSLT transforms in `org.hl7.fhir.core` | GitLab Advisory Database (GLAD)
CVE-2024-45294 XXE vulnerability in XSLT transforms in `org.hl7.fhir.core`: XSLT transforms performed by various components are vulnerable to XML external...
https://advisories.gitlab.com/maven/io.github.robothy/local-s3-rest/GHSA-2466-4485-4pxj/
LocalS3 Project Bucket Operations Vulnerable to XML External Entity (XXE) Injection | GitLab...
GHSA-2466-4485-4pxj LocalS3 Project Bucket Operations Vulnerable to XML External Entity (XXE) Injection: The LocalS3 project contains an XML External Entity...
https://advisories.gitlab.com/maven/ca.uhn.hapi.fhir/org.hl7.fhir.dstu3/CVE-2024-52007/
XXE vulnerability in XSLT parsing in `org.hl7.fhir.core` | GitLab Advisory Database (GLAD)
CVE-2024-52007 XXE vulnerability in XSLT parsing in `org.hl7.fhir.core`: XSLT parsing performed by various components are vulnerable to XML external entity...
https://oxmlxxe.github.io/reveal.js/bh_webcast.html
Exploiting XXE in File Parsing Functionality
file parsingexploitingxxefunctionality
https://wiki.unece.org/pages/worddav/preview.action?fileName=IWGMU-20-02+GRBP-2022-xxe+%28IWG-MU%29+Proposal+for+a+Supplement+8+to+UN-R51-03.docx&pageId=169018323
IWGMU-20-02 GRBP-2022-xxe (IWG-MU) Proposal for a Supplement 8 to UN-R51-03.docx - Transport -...