Apache Roller 5.0.3 XML Injection / File Disclosure

Apache Roller version 5.0.3 suffers from an XML external entity injection vulnerability that allows for file disclosure.

Leave a Reply