CVE-2021-4311

A vulnerability classified as problematic was found in Talend Open Studio for MDM. This vulnerability affects unknown code of the component XML Handler. The manipulation leads to xml external entity reference. The patch is identified as 31d442b9fb1d518128fd18f6e4d54e06c3d67793. It is recommended to apply a patch to fix this issue. VDB-217666 is the identifier assigned to this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:talend:open_studio:*:*:*:*:*:mdm:*:*

History

21 Nov 2024, 06:37

Type Values Removed Values Added
CVSS v2 : 4.9
v3 : 9.8
v2 : 4.9
v3 : 5.5
References () https://github.com/Talend/tmdm-server-se/commit/31d442b9fb1d518128fd18f6e4d54e06c3d67793 - Patch () https://github.com/Talend/tmdm-server-se/commit/31d442b9fb1d518128fd18f6e4d54e06c3d67793 - Patch
References () https://github.com/Talend/tmdm-server-se/pull/1420 - Patch () https://github.com/Talend/tmdm-server-se/pull/1420 - Patch
References () https://vuldb.com/?ctiid.217666 - Third Party Advisory () https://vuldb.com/?ctiid.217666 - Third Party Advisory
References () https://vuldb.com/?id.217666 - Third Party Advisory () https://vuldb.com/?id.217666 - Third Party Advisory

30 Oct 2023, 19:59

Type Values Removed Values Added
CWE CWE-611

20 Oct 2023, 14:15

Type Values Removed Values Added
Summary A vulnerability classified as problematic was found in Talend Open Studio for MDM. This vulnerability affects unknown code of the component XML Handler. The manipulation leads to xml external entity reference. The name of the patch is 31d442b9fb1d518128fd18f6e4d54e06c3d67793. It is recommended to apply a patch to fix this issue. VDB-217666 is the identifier assigned to this vulnerability. A vulnerability classified as problematic was found in Talend Open Studio for MDM. This vulnerability affects unknown code of the component XML Handler. The manipulation leads to xml external entity reference. The patch is identified as 31d442b9fb1d518128fd18f6e4d54e06c3d67793. It is recommended to apply a patch to fix this issue. VDB-217666 is the identifier assigned to this vulnerability.
CWE CWE-611

Information

Published : 2023-01-09 12:15

Updated : 2024-11-21 06:37


NVD link : CVE-2021-4311

Mitre link : CVE-2021-4311

CVE.ORG link : CVE-2021-4311


JSON object : View

Products Affected

talend

  • open_studio
CWE
CWE-611

Improper Restriction of XML External Entity Reference