Junglewise Threat Intelligence

LocalS3 Project Vulnerable to XML External Entity (XXE) Injection via Bucket Tagging API

Severity: medium · CVSS 4 · Published 2025-03-10

Technologies: io.github.robothy:local-s3-rest (Maven). Vendors: Maven.

Executive brief

LocalS3 Project Vulnerable to XML External Entity (XXE) Injection via Bucket Tagging API

Affected products

  • Maven io.github.robothy:local-s3-rest

Related threats