Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-2455
  • PyPI/docling
Docling's JATS XML backend is vulnerable to XML Entity Expansion (XXE) attacks 13 Jul
  • No fix available
  • Severity - 7.5 (High)
GHSA-cr42-rg2m-mq4q
  • PyPI/docling
Docling's JATS XML backend is vulnerable to XML Entity Expansion (XXE) attacks 11 May
  • No fix available
  • Severity - 7.5 (High)