Looking for the vulnerability index of Invicti's legacy products?
Python Improper Restriction of XML External Entity Reference Vulnerability (CVE-2022-48565) - Vulnerability Database

Python Improper Restriction of XML External Entity Reference Vulnerability (CVE-2022-48565)

Description

An XML External Entity (XXE) issue was discovered in Python through 3.9.1. The plistlib module no longer accepts entity declarations in XML plist files to avoid XML vulnerabilities.

References