CVE-2014-1626
XML External Entity (XXE) vulnerability in MARC::File::XML module before 1.0.2 for Perl, as used in Evergreen, Koha, perl4lib, and possibly other products, allows context-dependent attackers to read arbitrary files via a crafted XML file.
Date published : 2014-01-25
http://www.securityfocus.com/bid/65057
http://www.nntp.perl.org/group/perl.perl4lib/2014/01/msg3073.html