https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=23290
--- Comment #118 from David Cook <[email protected]> --- In December 2025, a bug with XML External Entity injection was found in Apache Tika. So there's a non-Koha example of how expanding external XML entities is not good. That vulnerability is referred to as the following: CWE-611: Improper Restriction of XML External Entity Reference -- You are receiving this mail because: You are watching all bug changes. _______________________________________________ Koha-bugs mailing list [email protected] https://lists.koha-community.org/cgi-bin/mailman/listinfo/koha-bugs website : http://www.koha-community.org/ git : http://git.koha-community.org/ bugs : http://bugs.koha-community.org/
