CVE-2015-3451

Source
https://cve.org/CVERecord?id=CVE-2015-3451
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2015-3451.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2015-3451
Downstream
Related
Published
2015-05-12T19:59:21Z
Modified
2026-04-16T06:18:04Z
Summary
[none]
Details

The _clone function in XML::LibXML before 2.0119 does not properly set the expand_entities option, which allows remote attackers to conduct XML external entity (XXE) attacks via crafted XML data to the (1) new or (2) load_xml function.

References

Affected packages