← back
CVE-2017-18640

CVE-2017-18640

8Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 27%
exploitation probability
27%top 2% of all CVEs
observed exploitation
nono source reports it
The Alias feature in SnakeYAML before 1.26 allows entity expansion during a load operation, a related issue to CVE-2003-1564.
Affected products
n/a · n/a