CVE-2022-28890
Processing external DTDs
A vulnerability in the RDF/XML parser of Apache Jena allows an attacker to cause an external DTD to be retrieved. This issue affects Apache Jena version 4.4.0 and prior versions. Apache Jena 4.2.x and 4.3.x do not allow external entities.
Affected products
Apache Software Foundation · Apache JenaWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →