CVE-2021-3878
9.8CRITICALcorenlp is vulnerable to Improper Restriction of XML External Entity Reference
Published: 10/15/2021Updated: 9/8/2025
Description
corenlp is vulnerable to Improper Restriction of XML External Entity Reference
AI AnalysisPowered by AI
Affected Products
stanfordcorenlp
References
- https://github.com/stanfordnlp/corenlp/commit/e5bbe135a02a74b952396751ed3015e8b8252e99PatchThird Party Advisory
- https://huntr.dev/bounties/a11c889b-ccff-4fea-9e29-963a23a63dd2ExploitPatchThird Party Advisory
- https://github.com/stanfordnlp/corenlp/commit/e5bbe135a02a74b952396751ed3015e8b8252e99PatchThird Party Advisory
- https://huntr.dev/bounties/a11c889b-ccff-4fea-9e29-963a23a63dd2ExploitPatchThird Party Advisory