The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expansion (XEE) attack.
{ "github_reviewed_at": "2020-06-16T21:51:25Z", "cwe_ids": [ "CWE-776" ], "nvd_published_at": null, "severity": "MODERATE", "github_reviewed": true }