OSV-2023-518

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/hamcrest/OSV-2023-518.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2023-518
Published
2023-06-29T14:00:20.971481Z
Modified
2023-06-29T14:00:20.971845Z
Summary
Security exception in com.code_intelligence.jazzer.sanitizers.XPathInjection.checkXpathExecute
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=60148

Crash type: Security exception
Crash state:
com.code_intelligence.jazzer.sanitizers.XPathInjection.checkXpathExecute
org.hamcrest.xml.HasXPath.compiledXPath
org.hamcrest.xml.HasXPath.<init>
References

Affected packages

OSS-Fuzz / hamcrest

Package

Name
hamcrest
Purl
pkg:generic/hamcrest

Affected ranges

Type
GIT
Repo
https://github.com/hamcrest/JavaHamcrest.git
Events

Affected versions

v3.*

v3.0
v3.0-rc1

Ecosystem specific

{
    "severity": "HIGH"
}

Database specific

{
    "introduced_range": "76eb0021a30e4838237ed7df18a5cf583ae9fec6:e4b9afdc2624bbebef3c7c739e6074ecd8a6c06e"
}