Security Advisory

CVE-2019-18212

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-10-23 21:05:32
Last updated 2024-08-05 01:47:13
Assigner mitre
State PUBLISHED

Description

XMLLanguageService.java in XML Language Server (aka lsp4xml) before 0.9.1, as used in Red Hat XML Language Support (aka vscode-xml) before 0.9.1 for Visual Studio and other products, allows a remote attacker to write to arbitrary files via Directory Traversal.