7.5
CVSSv3

CVE-2020-26708

Published: 29/06/2023 Updated: 08/09/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

requests-xml v0.2.3 exists to contain an XML External Entity Injection (XXE) vulnerability which allows malicious users to execute arbitrary code via a crafted XML file.

Vulnerable Product Search on Vulmon Subscribe to Product

requests-xml project requests-xml 0.2.3