Skip to content
This repository was archived by the owner on Jun 28, 2024. It is now read-only.
This repository was archived by the owner on Jun 28, 2024. It is now read-only.

simple-xml XXE vulnerability #201

@Matthew-X

Description

@Matthew-X

Hi, I wanted to implement this tool into my project, but it turns out that simple-xml has an XXE vulnerability. Would it be possible to replace this library with another? There is a fork from the simple-xml that presumably does not has XXE vulnerability in it, it's called simple-xml-safe (link: https://github.com/carrotsearch/simplexml-safe ). Could you implement it into your project or could I try do that and later create a PR to merge into your branch? Thank you.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions