Releases35
Frequency2 months 6 days
Last Release
Stars10.1K
CoreNLP: A Java suite of core NLP tools for tokenization, sentence segmentation, NER, parsing, coreference, sentiment analysis, etc.

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL7.5 HIGH

An Incorrect Access Control vulnerability exists in CoreNLP 4.3.2 via the classifier in NERServlet.java (lines 158 and 159).

9.8 CRITICAL7.5 HIGH

corenlp is vulnerable to Improper Restriction of XML External Entity Reference

7.1 HIGH5.8 MEDIUM

corenlp is vulnerable to Improper Restriction of XML External Entity Reference

7.5 HIGH5 MEDIUM

corenlp is vulnerable to Improper Restriction of XML External Entity Reference

9.8 CRITICAL7.5 HIGH

corenlp is vulnerable to Improper Restriction of XML External Entity Reference