CVE-2025-29932: XEE
Published Mar 25, 2025
·Updated
In JetBrains GoLand before 2025.1 an XXE during debugging was possible
Affected Software
2 affected components
JetBrains GoLand<2025.1
JetBrains GoLand<2025.1
Event History
Mar 25, 2025
CVE Published
via MITRE·12:44 PM
Data Sourced
via MITRE·12:44 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-29932?
CVE-2025-29932 is classified as a medium severity vulnerability due to its potential impact on security when debugging.
2
How do I fix CVE-2025-29932?
To fix CVE-2025-29932, upgrade JetBrains GoLand to version 2025.1 or later.
3
What kind of vulnerability is CVE-2025-29932?
CVE-2025-29932 is an XML External Entity (XXE) vulnerability that can occur during debugging.
4
Which versions of JetBrains GoLand are affected by CVE-2025-29932?
CVE-2025-29932 affects all versions of JetBrains GoLand prior to 2025.1.
5
What should I do if I cannot upgrade to a fixed version for CVE-2025-29932?
If you cannot upgrade, consider disabling any features that may allow XML processing during debugging to mitigate the risk of CVE-2025-29932.