CVE-2018-13439

WXPayUtil in WeChat Pay Java SDK allows XXE attacks involving a merchant notification URL.
References
Configurations

Configuration 1

cpe:2.3:a:tencent:wechat_pay:-:*:*:*:*:*:*:*

Information

Published : 2018-07-08 03:29

Updated : 2018-09-10 02:51


NVD link : CVE-2018-13439

Mitre link : CVE-2018-13439

Products Affected
No products.
CWE
CWE-611

Improper Restriction of XML External Entity Reference