Loading HuntDB...

GHSA-4f9w-3c78-j5r7

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

IBM MQ 8.0, (9.0, 9.1, 9.2 LTS), and (9.1 and 9.2 CD) are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 226339.

Related CVEs

Key Information

GHSA ID
GHSA-4f9w-3c78-j5r7
Published
August 20, 2022 12:00 AM
Last Modified
August 23, 2022 12:00 AM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 2, 2025 6:26 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.