AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-3773

CRITICAL · CVSS 9.8 EPSS 4.11%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-01-18 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2019-3773
Severity
CRITICAL
CVSS
9.8
EPSS
4.11%

Original NVD Description

Spring Web Services, versions 2.4.3, 3.0.4, and older unsupported versions of all three projects, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources.