Filtered by vendor Oracle Subscriptions
Filtered by product Communications Messaging Server Subscriptions
Total 41 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-0228 3 Apache, Fedoraproject, Oracle 14 James, Pdfbox, Fedora and 11 more 2024-11-21 9.8 Critical
Apache PDFBox 2.0.14 does not properly initialize the XML parser, which allows context-dependent attackers to conduct XML External Entity (XXE) attacks via a crafted XFDF.