Loading
Generated remediation guidance and an executive summary. No account required.
The Alias feature in SnakeYAML before 1.26 allows entity expansion during a load operation, a related issue to CVE-2003-1564.
Use CWE-776, Snakeyaml Project vendor hub and Snakeyaml product page to widen CVE-2017-18640 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-1471, CVE-2022-25857 and CVE-2022-38752 for nearby disclosures in the same product family.