A vulnerability in XML processing in Apache Jena, in versions up to 4.1.0, may allow an attacker to execute XML External Entities (XXE), including exposing the contents of local files to a remote server.
{ "binaries": [ { "binary_version": "3.17.0-3", "binary_name": "libapache-jena-java" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2021/UBUNTU-CVE-2021-39239.json"
{ "binaries": [ { "binary_version": "4.9.0-1", "binary_name": "libapache-jena-java" } ] }