Skip to content

Docling's METS GBS backend is vulnerable to XML Entity Expansion (XXE) attacks

High severity GitHub Reviewed Published May 11, 2026 to the GitHub Advisory Database • Updated May 18, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts