Skip to content

[GHSA-jx49-fphc-w293] Improper Restriction of XML External Entity Reference...#7197

Open
Bhanu99517 wants to merge 1 commit intoBhanu99517/advisory-improvement-7197from
Bhanu99517-GHSA-jx49-fphc-w293
Open

[GHSA-jx49-fphc-w293] Improper Restriction of XML External Entity Reference...#7197
Bhanu99517 wants to merge 1 commit intoBhanu99517/advisory-improvement-7197from
Bhanu99517-GHSA-jx49-fphc-w293

Conversation

@Bhanu99517
Copy link
Copy Markdown

Updates

  • Affected products
  • Source code location
  • Summary

Comments
Added affected package (digital.slovensko.autogram on Maven), affected version range (< 2.7.2), and patched version (2.7.2) based on the official release notes at https://github.com/slovensko-digital/autogram/releases/tag/v2.7.2

@github-actions github-actions bot changed the base branch from main to Bhanu99517/advisory-improvement-7197 March 19, 2026 13:37
@shelbyc
Copy link
Copy Markdown
Contributor

shelbyc commented Mar 19, 2026

Hi @Bhanu99517, I found a pom.xml for Autogram at https://github.com/slovensko-digital/autogram/blob/main/pom.xml, but I can't find an entry on https://central.sonatype.com/ or https://mvnrepository.com. Are you able to find an entry for Autogram? If not, I won't be able to review the advisory.

@github-actions
Copy link
Copy Markdown

github-actions bot commented Apr 4, 2026

👋 This pull request has been marked as stale because it has been open with no activity. You can: comment on the issue or remove the stale label to hold stale off for a while, add the Keep label to hold stale off permanently, or do nothing. If you do nothing this pull request will be closed eventually by the stale bot. Please see CONTRIBUTING.md for more policy details.

@github-actions github-actions bot added the Stale label Apr 4, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants