Vulnerabilities > Runelite

DATE CVE VULNERABILITY TITLE RISK
2018-12-20 CVE-2018-1000834 XXE vulnerability in Runelite
runelite version <= runelite-parent-1.4.23 contains a XML External Entity (XXE) vulnerability in Man in the middle runscape services call that can result in Disclosure of confidential data, denial of service, SSRF, port scanning.
network
high complexity
runelite CWE-611
critical
9.0