CVE-2024-45490 | libexpat up to 2.6.2 xmlparse.c XML_ParseBuffer xml external entity reference (ID 887)
A vulnerability was found in libexpat up to 2.6.2. It has been declared as critical. Affected by this vulnerability is the function XML_ParseBuffer of the file xmlparse.c. The manipulation leads to xml external entity reference.
This vulnerability is known as CVE-2024-45490. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.