CVE-2024-31573
MEDIUMDescription
XMLUnit for Java before 2.10.0, in the default configuration, might allow code execution via an untrusted stylesheet (used for an XSLT transformation), because XSLT extension functions are enabled.
Is your site exposed to CVE-2024-31573?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
References
Frequently Asked Questions
What is CVE-2024-31573? +
How severe is CVE-2024-31573? +
How do I check if I'm vulnerable to CVE-2024-31573? +
Related Vulnerabilities
mpGabinet is vulnerable to Remote Command Execution. An authorized user with access to the application and direct access to the …
Wine ships a .desktop file that registers itself as a MIME handler for EXE files and several other Windows executable …
Edge3 Worker RPC RCE on Airflow 2. This issue affects Apache Airflow Providers Edge3: before 2.0.0 - and only if …
An unauthenticated remote attacker could use a demo account of the portal to hijack devices that were created in that …
Plex Media Server (PMS) 1.41.7.x through 1.42.0.x before 1.42.1 is affected by incorrect resource transfer between spheres because /myplex/account provides …
Inappropriate implementation in AI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process …