CVE-2024-31573
4.0
Vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
Exploitability: 1.4 / Impact: 2.5
Source: MITRE (Secondary)
Description
XMLUnit for Java before 2.10.0, in the default configuration, might allow code execution via an untrusted stylesheet (used for an XSLT transformation), because XSLT extension functions are enabled.
References (4)
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
Timeline
No history available yet.