Skip to content

fix: vulnerability when parsing untrusted XML via isXmlEqualTo - #1316

Open
aureamunoz wants to merge 1 commit into
dekorateio:mainfrom
aureamunoz:fix-CVE-2026-24400
Open

fix: vulnerability when parsing untrusted XML via isXmlEqualTo #1316
aureamunoz wants to merge 1 commit into
dekorateio:mainfrom
aureamunoz:fix-CVE-2026-24400

Conversation

@aureamunoz

@aureamunoz aureamunoz commented Jan 27, 2026

Copy link
Copy Markdown
Collaborator

@aureamunoz aureamunoz changed the title fix: vulnerability when parsing untrusted XML via isXmlEqualTo assert… fix: vulnerability when parsing untrusted XML via isXmlEqualTo Jan 27, 2026
@sonarqubecloud

Copy link
Copy Markdown

@metacosm metacosm left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This is a dummy vulnerability, imo. No one is shipping assertj in code that runs in prod. Or, if they do, they deserve to be pown! 😅

@iocanel iocanel closed this Jun 30, 2026
@iocanel iocanel reopened this Jun 30, 2026
@sonarqubecloud

Copy link
Copy Markdown

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants