XML injection (XXE) In nokogiri
Description
Nokogiri is vulnerable to XML External Entity (XXE) attack Nokogiri before 1.5.4 is vulnerable to XXE attacks.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
rubygems | 1.5.4 | ||
debian 14 | 1.5.4-1 | ||
debian 13 | 1.5.4-1 | ||
debian 11 | 1.5.4-1 | ||
debian 12 | 1.5.4-1 |
Aliases
1. 2. 3. 4. 5. 6.
References
1. 2. 3.