<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Advisory on </title>
    <link>https://stoeps.de/tags/advisory/</link>
    <description>Recent content in Advisory on </description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <managingEditor>christoph.stoettner@stoeps.de (Christoph Stoettner)</managingEditor>
    <webMaster>christoph.stoettner@stoeps.de (Christoph Stoettner)</webMaster>
    <copyright>&amp;copy; 2026 Christoph Stöttner - This work is licensed under [CC BY-SA 4.0](https://creativecommons.org/licenses/by-sa/4.0/) &lt;span class=&#39;footerimg&#39;&gt;&lt;img src=&#39;https://mirrors.creativecommons.org/presskit/icons/cc.svg&#39; alt=&#39;&#39; style=&#39;max-width: 1em;max-height:1em;margin-left: .2em;&#39;&gt;&lt;img src=&#39;https://mirrors.creativecommons.org/presskit/icons/by.svg&#39; alt=&#39;&#39; style=&#39;max-width: 1em;max-height:1em;margin-left: .2em;&#39;&gt;&lt;img src=&#39;https://mirrors.creativecommons.org/presskit/icons/sa.svg&#39; alt=&#39;&#39; style=&#39;max-width: 1em;max-height:1em;margin-left: .2em;&#39;&gt;&lt;/span&gt;</copyright>
    <lastBuildDate>Fri, 26 Sep 2025 18:00:00 +0200</lastBuildDate><atom:link href="https://stoeps.de/tags/advisory/index.xml" rel="self" type="application/rss+xml" />
    
    <item>
      <title>HCL Connections is vulnerable for CVE-2025-54988</title>
      <link>https://stoeps.de/posts/2025/hcl_connections_is_vulnerable_for_cve-2025-54988/</link>
      <pubDate>Fri, 26 Sep 2025 18:00:00 +0200</pubDate>
      <author>christoph.stoettner@stoeps.de (Christoph Stoettner)</author>
      <guid>https://stoeps.de/posts/2025/hcl_connections_is_vulnerable_for_cve-2025-54988/</guid>
      <description>&lt;p&gt;HCL published the &lt;a href=&#34;https://support.hcl-software.com/csm?id=kb_article&amp;amp;sysparm_article=KB0124266&#34;  target=&#34;_blank&#34; rel=&#34;noreferrer&#34;&gt;Security Bulletin: HCL Connections is affected by an XML External Entity (XXE) vulnerability in Apache Tika (CVE-2025-54988)&lt;/a&gt; that Connections is also vulnerable for &lt;a href=&#34;https://nvd.nist.gov/vuln/detail/CVE-2025-54988&#34;  target=&#34;_blank&#34; rel=&#34;noreferrer&#34;&gt;CVE-2025-54988&lt;/a&gt;!&lt;/p&gt;</description>
      <media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://stoeps.de/posts/2025/hcl_connections_is_vulnerable_for_cve-2025-54988/feature.jpg" />
    </item>
    
  </channel>
</rss>
