FlawAtlas
Search the atlas
CVE-2024-46455 Moderate

CVE-2024-46455 in github.com/Unstructured-IO/unstructured

CVE-2024-46455 in github.com/Unstructured-IO/unstructured

Exploit probability 0.5%
Published December 10, 2024
Required by Not available
Last source change July 7, 2026

02 / AFFECTED SOFTWARE

Affected packages

Go github.com/Unstructured-IO/unstructured
PyPI unstructured

135 explicit affected versions

PyPI unstructured

135 explicit affected versions

04 / EVIDENCE

Source records

Open Source Vulnerabilities PYSEC-2026-1993

unstructured v.0.14.2 and before is vulnerable to XML External Entity (XXE) via the XMLParser.

View original source
Open Source Vulnerabilities GHSA-32r8-54hf-c9p3

unstructured v.0.14.2 and before is vulnerable to XML External Entity (XXE) via the XMLParser.

View original source

05 / REFERENCES

Further evidence