Vulnerabilities (CVE)

Filtered by vendor Apache Subscribe
Filtered by product Sling Jcr Contentloader
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-3353 1 Apache 1 Sling Jcr Contentloader 2024-11-21 5.0 MEDIUM 7.5 HIGH
The Apache Sling JCR ContentLoader 2.1.4 XmlReader used in the Sling JCR content loader module makes it possible to import arbitrary files in the content repository, including local files, causing potential information leaks. Users should upgrade to version 2.1.6 of the JCR ContentLoader