Python Improper Restriction of XML External Entity Reference Vulnerability (CVE-2022-48565)
Description
An XML External Entity (XXE) issue was discovered in Python through 3.9.1. The plistlib module no longer accepts entity declarations in XML plist files to avoid XML vulnerabilities.