icon

We found results for “

WS-2016-7062

Good to know:

icon
icon

Date: May 7, 2016

Security vulnerability found in plexus-utils before 3.0.24. XML injection found in XmlWriterUtil.java.

Language: Java

Severity Score

Severity Score

Weakness Type (CWE)

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

CWE-74

Top Fix

icon

Upgrade Version

Upgrade to version womtool - 50;womtool - 53;maven - 3.5.0;fiji - 20231211;wdltool - no_fix;beakerx - no_fix;pepquery - 2.0.2;cromwell - 40;fgbio - 0.2.0;fgbio - 0.4.0;io.hawt:hawtio-no-slf4j:1.5.X;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-no-slf4j:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.2.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.5.X;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.2.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.5.X;io.hawt:hawtio-default-offline:1.2.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.hawt:hawtio-default-offline:1.4.1;io.fabric8.fab:fab-osgi:1.0.0.redhat-394;io.fabric8.fab:fab-osgi:1.1.0.Beta1;io.fabric8.fab:fab-osgi:1.0.0.redhat-394;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.5.X;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:hawtio-base:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.5.X;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.2.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.5.X;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:sample:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.2.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.2.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.5.X;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:no_fix;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.2.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-maven-indexer:1.4.1;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:2.0.0;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;io.hawt:hawtio-custom-app:1.4.31;org.kie:kie-server-spring-boot-kafka-sample:7.60.0.Final;org.kie:kie-server-spring-boot-kafka-sample:7.68.0.Final;org.kie:kie-server-spring-boot-kafka-sample:7.68.0.Final;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.codehaus.plexus:plexus-utils:3.0.24;org.kie:jbpm-spring-boot-sample-basic:7.60.0.Final;org.kie:jbpm-spring-boot-sample-basic:7.68.0.Final;org.kie:jbpm-spring-boot-sample-basic:7.68.0.Final;org.kie:kie-server-spring-boot-integ-tests-sample:7.68.0.Final;org.kie:kie-server-spring-boot-integ-tests-sample:7.68.0.Final;org.kie:keycloak-kie-server-spring-boot-sample:7.60.0.Final;org.kie:keycloak-kie-server-spring-boot-sample:7.68.0.Final;org.kie:keycloak-kie-server-spring-boot-sample:7.68.0.Final;org.kie:kie-server-spring-boot-sample:7.68.0.Final;org.kie:kie-server-spring-boot-sample:7.68.0.Final;org.overlord.sramp:s-ramp-distro-shell:no_fix

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): NETWORK
Attack Complexity (AC): LOW
Privileges Required (PR): LOW
User Interaction (UI): NONE
Scope (S): CHANGED
Confidentiality (C): HIGH
Integrity (I): HIGH
Availability (A): HIGH

Do you need more information?

Contact Us