apache tika CVE-2019-10093 is a vulnerability in Apache Tika
Published on August 2, 2019

In Apache Tika 1.19 to 1.21, a carefully crafted 2003ml or 2006ml file could consume all available SAXParsers in the pool and lead to very long hangs. Apache Tika users should upgrade to 1.22 or later.

NVD


Products Associated with CVE-2019-10093

Want to know whenever a new CVE is published for Apache Tika? stack.watch will email you.

 

Affected Versions

Apache Tika Version 1.19 to 1.21 is affected by CVE-2019-10093

Exploit Probability

EPSS
1.45%
Percentile
80.58%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.