Vulnerabilities > CVE-2023-26264 - XXE vulnerability in Talend Data Catalog 7.320210930

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
talend
CWE-611

Summary

All versions of Talend Data Catalog before 8.0-20220907 are potentially vulnerable to XML External Entity (XXE) attacks in the license parsing code.

Vulnerable Configurations

Part Description Count
Application
Talend
2