CVE-2019-19031: Edit-XML Easy XML Editor

High severity, CVSS 8.1. EPSS: 5.2% chance of exploitation in the next 30 days.

Easy XML Editor through v1.7.8 is affected by: XML External Entity Injection. The impact is: Arbitrary File Read and DoS by consuming resources. The component is: XML Parsing. The attack vector is: Specially crafted XML payload.

Affected products

  • Edit-XML Easy XML Editor: up to and including 1.7.8

Published 2019-12-30. Last modified 2026-06-17.