Vulnerabilities > Forcepoint > Data Loss Prevention > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-09-12 CVE-2022-1700 XXE vulnerability in Forcepoint products
Improper Restriction of XML External Entity Reference ('XXE') vulnerability in the Policy Engine of Forcepoint Data Loss Prevention (DLP), which is also leveraged by Forcepoint One Endpoint (F1E), Web Security Content Gateway, Email Security with DLP enabled, and Cloud Security Gateway prior to June 20, 2022.
network
low complexity
forcepoint CWE-611
critical
9.8