Search CVE reports


Toggle filters

21 – 22 of 22 results


CVE-2016-4434

Medium priority
Vulnerable

Apache Tika before 1.13 does not properly initialize the XML parser or choose handlers, which might allow remote attackers to conduct XML External Entity (XXE) attacks via vectors involving (1) spreadsheets in OOXML files and (2)...

1 affected package

tika

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tika Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2015-3271

Medium priority
Ignored

Apache Tika server (aka tika-server) in Apache Tika 1.9 might allow remote attackers to read arbitrary files via the HTTP fileUrl header.

1 affected package

tika

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tika Not affected
Show less packages