Skip to content
This repository has been archived by the owner on Jun 28, 2024. It is now read-only.

simple-xml XXE vulnerability #201

Open
Matthew-X opened this issue Jun 16, 2024 · 0 comments
Open

simple-xml XXE vulnerability #201

Matthew-X opened this issue Jun 16, 2024 · 0 comments

Comments

@Matthew-X
Copy link

Hi, I wanted to implement this tool into my project, but it turns out that simple-xml has an XXE vulnerability. Would it be possible to replace this library with another? There is a fork from the simple-xml that presumably does not has XXE vulnerability in it, it's called simple-xml-safe (link: https://github.com/carrotsearch/simplexml-safe ). Could you implement it into your project or could I try do that and later create a PR to merge into your branch? Thank you.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant