CVE-2019-10093 is a vulnerability in Apache Tika
Published on August 2, 2019
In Apache Tika 1.19 to 1.21, a carefully crafted 2003ml or 2006ml file could consume all available SAXParsers in the pool and lead to very long hangs. Apache Tika users should upgrade to 1.22 or later.
Products Associated with CVE-2019-10093
Want to know whenever a new CVE is published for Apache Tika? stack.watch will email you.
Affected Versions
Apache Tika Version 1.19 to 1.21 is affected by CVE-2019-10093Exploit Probability
EPSS
1.45%
Percentile
80.58%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.