Glossary

XXE (XML External Entity)

A vulnerability that exploits XML document processing to read local files, make network requests, or cause denial of service. XXE injection occurs when an XML parser accepts external entities without restriction. It is particularly dangerous in SOAP APIs and file import features.

Related Pages

Other Terms

Need an external review of your HR SaaS?

Share your product, stack, and client context. We will come back with the right review scope.

Discuss your audit