Security Advisory

CVE-2021-41411

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-06-16 09:52:01
Last updated 2024-08-04 03:08:32
Assigner mitre
State PUBLISHED

Description

drools <=7.59.x is affected by an XML External Entity (XXE) vulnerability in KieModuleMarshaller.java. The Validator class is not used correctly, resulting in the XXE injection vulnerability.