Package impact
Maven / org.apache.poi:poi
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2017-12626 | high | 7.5 | 7.5 | 5y ago | Apache POI in versions prior to release 3.17 are vulnerable to Denial of Service Attacks: 1) Infinite Loops while parsing crafted WMF, EMF, MSG and macros (POI bugs 61338 and 61294), and 2) Out of Me… | |||
| CVE-2019-12415 | unknown | — | — | 4y ago | Improper Restriction of XML External Entity Reference in Apache POI |