CVE-2023-4218

CVSS V2 None CVSS V3 None
Description
In Eclipse IDE versions < 2023-09 (4.29) some files with xml content are parsed vulnerable against all sorts of XXE attacks. The user just needs to open any evil project or update an open project with a vulnerable file (for example for review a foreign repository or patch).
Overview
  • CVE ID
  • CVE-2023-4218
  • Assigner
  • eclipse
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-11-09T08:26:51.567Z
  • Last Modified Date
  • 2023-11-09T08:26:51.567Z
History
Created Old Value New Value Data Type Notes
2024-06-24 20:02:04 Added to TrackCVE