CVE-2019-17637P4HIGHCVSS 7.1fixed in eclipse-wtp 3.18-1 (bookworm)2019
CVE-2019-17637 [HIGH] CVE-2019-17637: eclipse-wtp - In all versions of Eclipse Web Tools Platform through release 3.18 (2020-06), XM...
In all versions of Eclipse Web Tools Platform through release 3.18 (2020-06), XML and DTD files referring to external entities could be exploited to send the contents of local files to a remote server when edited or validated, even when external entity resolution is disabled in the user preferences.
Scope: local
bookworm: resolved (fixed in 3.18-1)
bullseye: res
debian