CVE-2021-41411

Publication date

2022-06-16 09:52:01

Family

mitre

State

PUBLISHED

Description

drools <=7.59.x is affected by an XML External Entity (XXE) vulnerability in KieModuleMarshaller.java. The Validator class is not used correctly, resulting in the XXE injection vulnerability.