← back
CVE-2019-5427

CVE-2019-5427

EPSS 4.9%CWE-776
c3p0 version < 0.9.5.4 may be exploited by a billion laughs attack when loading XML configuration due to missing protections against recursive entity expansion when loading configuration.
Affected products
n/a · c3p0

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →