CVE-2014-0170: JBoss Teiid
Medium severity, CVSS 4.3. EPSS: 2% chance of exploitation in the next 30 days.
Teiid before 8.4.3 and before 8.7 and Red Hat JBoss Data Virtualization 6.0.0 before patch 3 allows remote attackers to read arbitrary files via a crafted request to a REST endpoint, related to an XML External Entity (XXE) issue.
Affected products
- JBoss Teiid: up to and including 8.6; version 8.4 only
- Red Hat JBoss Data Virtualization: up to and including 6.0.0
Published 2014-09-30. Last modified 2026-06-17.