1 results (0.004 seconds)
CVSS: 9.8EPSS: 0%CPEs: 2EXPL: 1
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2018-20433
https://notcve.org/view.php?id=CVE-2018-20433
24 Dec 2018 — c3p0 0.9.5.2 allows XXE in extractXmlConfigFromInputStream in com/mchange/v2/c3p0/cfg/C3P0ConfigXmlUtils.java during initialization. c3p0 0.9.5.2 permite XEE (XML External Entity) en extractXmlConfigFromInputStream en com/mchange/v2/c3p0/cfg/C3P0ConfigXmlUtils.java durante la inicialización. • https://github.com/shanika04/cp30_XXE_partial_fix • CWE-611: Improper Restriction of XML External Entity Reference •