CVE-2025-44044

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Keyoti SearchUnit prior to 9.0.0. is vulnerable to XML External Entity (XXE). An attacker who can force a vulnerable SearchUnit host into parsing maliciously crafted XML and/or DTD files can exfiltrate some files from the underlying operating system.

Published 2025-06-10. Last modified 2026-06-17.