CVE-2018-20222 (NVD)

2019-04-04

XXE issue in Airsonic before 10.1.2 during parse.

Products Airsonic
Type Improper Restriction of XML External Entity Reference ('XXE') (CWE-611)
First patch - None (likely due to unavailable code)
Links https://github.com/airsonic/airsonic/blob/master/CHANGELOG.md
https://github.com/airsonic/airsonic/releases/tag/v10.2.1