Critical Flaw in Apache Tika PDF Parser Exposes Sensitive Data to Attackers

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

Critical Flaw in Apache Tika PDF Parser Exposes Sensitive Data to Attackers

Post by Shane1145 »

A critical XML External Entity (XXE) vulnerability has been discovered in Apache Tika’s PDF parser module, potentially allowing attackers to access sensitive data and compromise internal systems.

The flaw, tracked as CVE-2025-54988, affects a wide range of Apache Tika deployments and has prompted immediate security advisories from the Apache Software Foundation.


https://gbhackers.com/critical-flaw-in- ... df-parser/
Post Reply