sweet_xml
A sweet wrapper of :xmerl to help query XML docs
Activity
- Latest release
- 1y ago
- Total releases
- 21
- Cadence
- ~3 months
- Last 12 months
- 0
Details
- License
- MIT
- First release
- Jul 24, 2014
| Version | Released | |
|---|---|---|
0.7.5
patch
| ||
0.7.4
patch
| ||
0.7.3
patch
| ||
0.7.2
patch
| ||
0.7.1
patch
| ||
0.7.0
minor
| ||
0.6.6
patch
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.6.5
patch
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.6.4
patch
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.6.3
patch
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.6.2
patch
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.6.1
patch
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.6.0
minor
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.5.1
patch
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.5.0
minor
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.4.0
minor
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.3.0
minor
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.2.1
patch
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.2.0
minor
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.1.1
patch
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev | ||
0.1.0
initial
1 CVE
CVE-2019-15160
GHSA-qpmc-wprv-x746
Apr 12, 2022
Inline DTD allows XML bomb attack
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.6.1
0.6.2
0.6.3
+ 3 more Show less
0.6.4
0.6.5
0.6.6
Fixed in
0.7.0
References Updated Dec 10, 2025 · Source: OSV.dev |