0f8f071e24
Changes to the xml security scanner to use libxml_disable_entity_loader() when cleanly supported and thread-safe, and to handle UTF-7 charset which otherwise permits an XXE exploit |
||
---|---|---|
.. | ||
WithoutStyle.xml | ||
XEETestInvalidSimpleXML.xml | ||
XEETestInvalidUTF-7.xml | ||
XEETestInvalidUTF-8.xml | ||
XEETestInvalidUTF-16.xml | ||
XEETestInvalidUTF-16BE.xml | ||
XEETestInvalidUTF-16LE.xml | ||
XEETestValidUTF-8.xml | ||
XEETestValidUTF-16.xml | ||
XEETestValidUTF-16BE.xml | ||
XEETestValidUTF-16LE.xml |