← Back

Freeplane

freeplane

Vendor: Freeplane • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Debian
Freeplane
2Debian Linux
Freeplane
Nov 21, 2024
Mar 13, 2018
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
FreePlane version 1.5.9 and earlier contains a XML External Entity (XXE) vulnerability in XML Parser in mindmap loader that can result in stealing data from victim's machine. This attack appears to require the victim to...Show more
FreePlane version 1.5.9 and earlier contains a XML External Entity (XXE) vulnerability in XML Parser in mindmap loader that can result in stealing data from victim's machine. This attack appears to require the victim to open a specially crafted mind map file. This vulnerability appears to have been fixed in 1.6+.Show less