CVE-2019-19450 | ReportLab up to 3.5.30 XML Document paraparser.py start_unichar xml injection (DLA 3590-1 / Nessus ID 236756)
A vulnerability was found in ReportLab up to 3.5.30 and classified as critical. This issue affects the function start_unichar of the file paraparser.py of the component XML Document Handler. The manipulation leads to xml injection.
The identification of this vulnerability is CVE-2019-19450. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.