Skip to main content
Home / Hacking Glossary / XML External Entity

XML External Entity (XXE)

A vulnerability in XML parsers that allows attackers to include external entities, potentially reading local files, performing SSRF, or causing denial of service.

vulnerability web
Practice Challenges 1 category
Active CTF Events 3
View all events →
Related Terms 12

Ready to learn XML External Entity hands-on?

Put theory into practice with real hacking labs, CTF challenges, and guided courses on Parrot CTFs Events.

Get Started Free