CVE-2021-40690

high Apache
CVSS v3 Base Score
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
7.4%
Exploitation probability in 30 days
Top 6% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Confidentiality
High
Integrity
None
Availability
None
Published: September 19, 2021 (1814 days ago)
Last Modified: August 25, 2026
Vendor: Apache
Source: NVD

Description

All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allows an attacker to abuse an XPath Transform to extract any local .xml files in a RetrievalMethod element.

CWE

CWE-200

Affected Products

apache santuario xml security for javaapache cxfapache tomeedebian debian linuxoracle agile product lifecycle managementoracle commerce guided searchoracle commerce platformoracle communications diameter intelligence huboracle communications messaging serveroracle flexcube private banking

References