📦

woodstox

Vendor: fasterxml

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 1 Remote Access
Total CVEs 1 Total Indexed
Avg. EPSS 19.65% Exploit Prob.
Latest CVE CVE-2022-40152 Sep 16

Security Vulnerability Index

Page 1 / 1
6.5 CVSS

Those using Woodstox to parse XML data may be vulnerable to Denial of Service attacks (DOS) if DTD support is enabled. If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow. This effect may support a denial of service attack.

EPSS: 19.65%