Xalan-J XSLTC Integer Truncation

Discussion in 'News Aggregator' started by Packet Storm, 26 Aug 2022.

  1. Packet Storm

    Packet Storm Guest

    The Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated by the internal XSLTC compiler and execute arbitrary Java bytecode.

    Continue reading...
     

Share This Page

Loading...