yui / yuicompressor

YUI Compressor
http://yui.github.com/yuicompressor/
Other
3.01k stars 662 forks source link

A potential XXE vulnerability found in rhino #346

Open bochulindra opened 1 year ago

bochulindra commented 1 year ago

See https://github.com/mozilla/rhino/issues/479. I believe rhino 1.7.12 has the fix.

hparwani2 commented 9 months ago

Any updates on this?

hparwani2 commented 6 months ago

@tml could you please let us know what to do in this case?