CVE-2024-36827: ebookmeta XML External Entity vulnerability
(updated )
An XML External Entity (XXE) vulnerability in the ebookmeta.get_metadata
function of ebookmeta before v1.2.8 allows attackers to access sensitive information or cause a Denial of Service (DoS) via crafted XML input.
References
Detect and mitigate CVE-2024-36827 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →