jersey
jersey copied to clipboard
This is no longer the active Jersey repository. Please see the README.md
Results
101
jersey issues
Sort by
recently updated
recently updated
newest added
The DocumentBuilderFactory and XmlInputFactory providers aren't vulnerable to Billion Laughs attacks (exponential entity expansion) by disabling entity expansion altogether. But the SAXParserFactory provider is only disabling external entities, and it's...
Type: Bug
Priority: Critical
Component: security