An XML External Entity (XXE) issue was discovered in Python through 3.9.1. The plistlib module no longer accepts entity declarations in XML plist files to avoid XML vulnerabilities.
{
"severity": "Critical",
"cpes": [
"cpe:2.3:a:python:python:*:*:*:*:*:*:*:*"
]
}