Loading...
Loading...
The streaming XML parser in Apache CXF 2.5.x before 2.5.10, 2.6.x before 2.6.7, and 2.7.x before 2.7.4 allows remote attackers to cause a denial of service (CPU and memory consumption) via crafted XML with a large number of (1) elements, (2) attributes, (3) nested constructs, and possibly other vectors.
August 19, 2013
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2013-2160
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.