Apache Roller version 5.0.3 suffers from an XML external entity injection vulnerability that allows for file disclosure. Continue reading...