The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expansion (XEE) attack.
{
    "nvd_published_at": null,
    "severity": "MODERATE",
    "github_reviewed_at": "2020-06-16T21:51:25Z",
    "github_reviewed": true,
    "cwe_ids": [
        "CWE-776"
    ]
}