Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
restlet vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-1868
Restlet Framework 2.1.x prior to 2.1.7 and 2.x.x prior to 2.2 RC1, when using XMLRepresentation or XML serializers, allows malicious users to cause a denial of service via an XML Entity Expansion (XEE) attack.
Restlet Restlet Framework
Restlet Restlet Framework 2.2
Restlet Restlet Framework 2.1.6
Restlet Restlet Framework 2.1.5
Restlet Restlet Framework 2.1.4
Restlet Restlet Framework 2.1.3
Restlet Restlet Framework 2.1.2
Restlet Restlet Framework 2.1.1
Restlet Restlet Framework 2.1.0
7.5
CVSSv3
CVE-2017-14949
Restlet Framework prior to 2.3.12 allows remote malicious users to access arbitrary files via a crafted REST API HTTP request that conducts an XXE attack, because only general external entities (not parameter external entities) are properly considered. This is related to XmlRepre...
Restlet Restlet
7.5
CVSSv3
CVE-2017-14868
Restlet Framework prior to 2.3.11, when using SimpleXMLProvider, allows remote malicious users to access arbitrary files via an XXE attack in a REST API HTTP request. This affects use of the Jax-rs extension.
Restlet Restlet
9.8
CVSSv3
CVE-2014-2228
The XStream extension in HP Fortify SCA prior to 2.2 RC3 allows remote malicious users to execute arbitrary code via unsafe deserialization of XML messages.
Talend Restlet
Talend Restlet 2.2
7.5
CVSSv3
CVE-2012-2656
An XML eXternal Entity (XXE) issue exists in Restlet 1.1.10 in an endpoint using XML transport, which lets a remote attacker obtain sensitive information.
Talend Restlet 1.1.10
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
cross-site request forgery
unauthorized
CVE-2024-33925
reflected XSS
CVE-2023-51580
CVE-2023-51579
CVE-2015-2051
CVE-2023-51609
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started