File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change @@ -63,12 +63,12 @@ the various modules are vulnerable to them.
6363========================= ================== ================== ================== ================== ==================
6464kind sax etree minidom pulldom xmlrpc
6565========================= ================== ================== ================== ================== ==================
66- billion laughs ** Vulnerable ** (1) ** Vulnerable ** (1) ** Vulnerable ** (1) ** Vulnerable ** (1) ** Vulnerable ** (1)
67- quadratic blowup ** Vulnerable ** (1) ** Vulnerable ** (1) ** Vulnerable ** (1) ** Vulnerable ** (1) ** Vulnerable ** (1)
66+ billion laughs Safe (1) Safe (1) Safe (1) Safe (1) Safe (1)
67+ quadratic blowup Safe (1) Safe (1) Safe (1) Safe (1) Safe (1)
6868external entity expansion Safe (5) Safe (2) Safe (3) Safe (5) Safe (4)
6969`DTD `_ retrieval Safe (5) Safe Safe Safe (5) Safe
7070decompression bomb Safe Safe Safe Safe **Vulnerable **
71- large tokens ** Vulnerable ** (6) ** Vulnerable ** (6) ** Vulnerable ** (6) ** Vulnerable ** (6) ** Vulnerable ** (6)
71+ large tokens Safe (6) Safe (6) Safe (6) Safe (6) Safe (6)
7272========================= ================== ================== ================== ================== ==================
7373
74741. Expat 2.4.1 and newer is not vulnerable to the "billion laughs" and
You can’t perform that action at this time.
0 commit comments