Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-35176 PoC — REXML contains a denial of service vulnerability

Source
Associated Vulnerability
Title:REXML contains a denial of service vulnerability (CVE-2024-35176)
Description: REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `<`s in an attribute value. Those who need to parse untrusted XMLs may be impacted to this vulnerability. The REXML gem 3.2.7 or later include the patch to fix this vulnerability. As a workaround, don't parse untrusted XMLs.
Description
CVE-2024-35176 poc full
Readme
# CVE-2024-35176
CVE-2024-35176 poc full
File Snapshot

[4.0K] /data/pocs/8ba2581cd42e57da0d8846248885c2d1b6702010 ├── [3.2K] hack2.xml └── [ 41] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →