← Back to CVE List

CVE-2022-28890

Published: 2022-05-05T09:15Z
Last Modified: 2024-11-21T06:58Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A vulnerability in the RDF/XML parser of Apache Jena allows an attacker to cause an external DTD to be retrieved. This issue affects Apache Jena version 4.4.0 and prior versions. Apache Jena 4.2.x and 4.3.x do not allow external entities. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt