Safety vulnerability ID: 60630
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Python 3.6.13, 3.7.10, 3.8.7 and 3.9.1 include a fix for CVE-2022-48565: XML External Entity vulnerability. The plistlib module no longer accepts entity declarations in XML plist files to avoid XML vulnerabilities.
https://bugs.python.org/issue42051
Latest version: 0.9.8
An XML External Entity (XXE) issue was discovered in Python through 3.9.1. The plistlib module no longer accepts entity declarations in XML plist files to avoid XML vulnerabilities. See CVE-2022-48565.
MISC:https://bugs.python.org/issue42051: https://bugs.python.org/issue42051
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application