Vulnerability Description
XML external entity (XXE) vulnerability affecting certain versions of a Mule runtime component that may affect CloudHub, GovCloud, Runtime Fabric, Pivotal Cloud Foundry, Private Cloud Edition, and on-premise customers.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Salesforce | Mule | >= 3.0.0, < 4.3.0 |
Related Weaknesses (CWE)
References
- https://help.salesforce.com/articleView?id=000362693&type=1&mode=1Vendor Advisory
- https://help.salesforce.com/articleView?id=000362693&type=1&mode=1Vendor Advisory
FAQ
What is CVE-2021-1630?
CVE-2021-1630 is a vulnerability with a CVSS score of 7.5 (HIGH). XML external entity (XXE) vulnerability affecting certain versions of a Mule runtime component that may affect CloudHub, GovCloud, Runtime Fabric, Pivotal Cloud Foundry, Private Cloud Edition, and on-...
How severe is CVE-2021-1630?
CVE-2021-1630 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-1630?
Check the references section above for vendor advisories and patch information. Affected products include: Salesforce Mule.