CVE-2024-50848: Rws Worldserver

Medium severity, CVSS 6.5. EPSS: 1.2% chance of exploitation in the next 30 days.

An XML External Entity (XXE) vulnerability in the Import object and Translation Memory import functionalities of WorldServer v11.8.2 to access sensitive information and execute arbitrary commands via supplying a crafted .tmx file.

Affected products

  • Rws Worldserver: version 11.8.2 only

Published 2024-11-18. Last modified 2026-06-17.