CVE-2016-3674 | XStream up to 1.4.8 Dom4JDriver XML Document information disclosure (FEDORA-2016-175b56bb05 / Nessus ID 90327)
A vulnerability was found in XStream up to 1.4.8. It has been classified as critical. Affected is an unknown function of the component Dom4JDriver/DomDriver/JDomDriver/JDom2Driver/SjsxpDriver/StandardStaxDriver/WstxDrive. The manipulation as part of XML Document leads to information disclosure.
This vulnerability is traded as CVE-2016-3674. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.