CVE-2019-12996: Mendix
Medium severity, CVSS 5.3. EPSS: 0.8% chance of exploitation in the next 30 days.
In Mendix 7.23.5 and earlier, issue in XML import mappings allow DOCTYPE declarations in the XML input that is potentially unsafe.
Affected products
- Mendix Mendix: up to and including 7.23.5
Published 2019-09-10. Last modified 2026-06-17.