Looking for the vulnerability index of Invicti's legacy products?
Python Improper Restriction of XML External Entity Reference Vulnerability (CVE-2022-48565) - Vulnerability Database

Python Improper Restriction of XML External Entity Reference Vulnerability (CVE-2022-48565)

Description

An XML External Entity (XXE) issue was discovered in Python through 3.9.1. The plistlib module no longer accepts entity declarations in XML plist files to avoid XML vulnerabilities.

References

Related Vulnerabilities