Search CVE reports


Toggle filters

41 – 42 of 42 results


CVE-2017-7957

Medium priority

Some fixes available 2 of 5

XStream through 1.4.9, when a certain denyTypes workaround is not used, mishandles attempts to create an instance of the primitive type 'void' during unmarshalling, leading to a remote application crash, as demonstrated by an...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Not affected
Show less packages

CVE-2016-3674

Medium priority

Some fixes available 2 of 7

Multiple XML external entity (XXE) vulnerabilities in the (1) Dom4JDriver, (2) DomDriver, (3) JDomDriver, (4) JDom2Driver, (5) SjsxpDriver, (6) StandardStaxDriver, and (7) WstxDriver drivers in XStream before 1.4.9 allow remote...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Not affected Not affected Not affected Not affected
Show less packages