Explore
1-20 of 20
Injection: XXE: Jaxb2Marshaller#setProcessExternalEntities set to true
Prevent XXE by disabling the processing of external entities
- error
- java
- Spring
- security
- XXE
- framework specific
- Spring XML
- OWASP Top 10
Injection: XXE: Jaxb2Marshaller#setSupportDtd set to true
Prevent XXE by disabling DTDs
- error
- java
- Spring
- security
- XXE
- framework specific
- Spring XML
- OWASP Top 10
Injection: XXE: Jaxb2RootElementHttpMessageConverter#setProcessExternalEntities set to true
Prevent XXE by disabling the processing of External Entities
- error
- java
- Spring
- security
- XXE
- framework specific
- Spring XML
- OWASP Top 10
Injection: XXE: Jaxb2RootElementHttpMessageConverter#setSupportDtd set to true
Prevent XXE by disabling DTDs
- error
- java
- Spring
- security
- XXE
- framework specific
- Spring XML
- OWASP Top 10
Injection: XXE: SourceHttpMessageConverter#setProcessExternalEntities set to true
Prevent XXE by disabling the processing of External Entities
- error
- java
- Spring
- security
- XXE
- framework specific
- Spring XML
- OWASP Top 10
Injection: XXE: SourceHttpMessageConverter#setSupportDtd set to true
Prevent XXE by disabling DTDs
- error
- java
- Spring
- security
- XXE
- framework specific
- Spring XML
- OWASP Top 10
Input Validation: Avoid XXE: Use automatically protected source types
Could lead to XXE
- error
- java
- Spring
- security
- XXE
- framework specific
- Spring XML
- OWASP Top 10
XXE: DocumentBuilderFactory: Add missing feature dissallow-doctype-decl
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: DocumentBuilderFactory: Add missing feature external-parameter-entities
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: DocumentBuilderFactory: Add missing feature load-external-dtd
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: DocumentBuilderFactory: Add missing feature setExpandEntityReferences
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: DocumentBuilderFactory: Add missing feature setXIncludeAware
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: DocumentBuilderFactory: Set features to false
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: DocumentBuilderFactory: Set features to true
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: DocumentBuilderFactory: Setters to false
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: Set missing secure processing feature
Could lead to XXE
- error
- java
- OWASP Top 10
- XML
- XXE
- basic protection set
- security
XXE: Set secure processing feature to true
Could lead to XXE
- error
- java
- security
- XML
- basic protection set
- XXE
- OWASP Top 10
XXE: XMLInputFactory: Add IS_SUPPORTING_EXTERNAL_ENTITIES feature
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: XMLInputFactory: Add SUPPORT_DTD feature
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10
XXE: XMLInputFactory: Set features to false
Could lead to XXE
- error
- java
- security
- XXE
- basic protection set
- OWASP Top 10