2bc58a0d1a
The current configuration of the SAXParser is vulnerable for an XML bomb attack. The feature "http://apache.org/xml/features/disallow-doctype-decl" of the SAXBuilder must be activated in order to fix the vulnerability. |
||
---|---|---|
.. | ||
main | ||
site | ||
test |