CVE-2019-10782: Checkstyle

Medium severity, CVSS 5.3. EPSS: 1.5% chance of exploitation in the next 30 days.

All versions of com.puppycrawl.tools:checkstyle before 8.29 are vulnerable to XML External Entity (XXE) Injection due to an incomplete fix for CVE-2019-9658.

Affected products

  • Checkstyle Checkstyle: before 8.29 (fixed in 8.29)

Published 2020-01-30. Last modified 2026-06-17.