CVE-2017-18640 | SnakeYAML 1.18 Alias xml entity expansion (Issue 377 / Nessus ID 276199)
A vulnerability was found in SnakeYAML 1.18. It has been classified as problematic. The impacted element is an unknown function of the component Alias Handler. Performing a manipulation results in xml entity expansion.
This vulnerability was named CVE-2017-18640. The attack may be initiated remotely. There is no available exploit.