XML external entity (XXE) vulnerability in the Java XML processing functionality in Play prior to 2.2.6 and 2.3.x prior to 2.3.5 might allow remote malicious users to read arbitrary files, cause a denial of service, or have unspecified other impact via crafted XML data.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
playframework play framework 2.2.5 |
||
playframework play framework 2.2.4 |
||
playframework play framework 2.2.3 |
||
playframework play framework 2.2.2 |
||
playframework play framework 2.2.1 |
||
playframework play framework 2.2.0 |
||
lightbend play framework 2.2.0 |
||
lightbend play framework 2.2.1 |
||
lightbend play framework 2.2.2 |
||
lightbend play framework 2.3.0 |
||
lightbend play framework 2.3.1 |
||
lightbend play framework 2.3.2 |
||
lightbend play framework 2.3.3 |
||
lightbend play framework 2.3.4 |