PatchSiren

Ministry of Justice CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Ministry of Justice CVE published 2026-08-12

CVE-2026-16999

The Ministry of Justice UYAP Document Editor is vulnerable to an improper restriction of XML external entity reference, allowing Serialized Data External Linking. This issue affects versions from 4.5.17 before 5.4.17. The vulnerability has a CVSS score of 6.3 and a severity of MEDIUM. Administrators and users of UYAP Document Editor versions 4.5.17 to 5.4.17 should review and apply patches or updates to m [truncated]