An XML External Entity (XXE) issue was discovered in Python through 3.9.1. The plistlib module no longer accepts entity declarations in XML plist files to avoid XML vulnerabilities.
{ "cpes": [ "cpe:2.3:a:python:python:*:*:*:*:*:*:*:*" ], "severity": "Critical" }