SecPod

Learn Search

Search across all Learn content

← Back to Security Research
Understanding CVE-2025-66516: Critical XXE Exposure in Apache Tika

Understanding CVE-2025-66516: Critical XXE Exposure in Apache Tika

A maximum severity vulnerability has been identified in Apache Tika, a widely used open-source content analysis toolkit. This vulnerability, designated as CVE-2025-66516, has a CVSS score of 10.0, indicating its critical impact. The flaw allows XML External Entity (XXE) injection attacks, potentiall...

Dec 8, 2025By Santosh Sethuraman4 min read

A maximum severity vulnerability has been identified in Apache Tika, a widely used open-source content analysis toolkit. This vulnerability, designated as CVE-2025-66516, has a CVSS score of 10.0, indicating its critical impact. The flaw allows XML External Entity (XXE) injection attacks, potentially leading to the exposure of sensitive internal resources and, in some instances, remote code execution.

Apache Tika is the backbone of many document ingestion pipelines, used in systems like Apache Solr, Elasticsearch, and various content analysis platforms. Consequently, this vulnerability poses a significant risk to a vast number of enterprise organizations relying on these technologies for search and data indexing.

Root Cause Analysis

While XXE is a known class of vulnerability, this specific instance (CVE-2025-66516) stems from how Apache Tika processes complex structures within PDF files, specifically the XML Forms Architecture (XFA). XFA is a family of proprietary XML specifications that was proposed and maintained by JetForm to enhance the processing of web forms.

The root cause lies deeper than the PDF parser itself. The vulnerability resides within the tika-core module, which provides the foundational XML parsing capabilities for the toolkit. When Tika encounters a PDF with embedded XFA data, it extracts the XML content for analysis. However, prior to version 3.2.2, the core XML parsers did not sufficiently restrict the resolution of external entities during this extraction process.

This oversight allows the parser to “trust” the XML input provided inside the PDF, attempting to resolve references to external files or URLs defined by an attacker, ultimately leading to unauthorized file access or Server-Side Request Forgery (SSRF).

The Exploitation Process

Exploiting CVE-2025-66516 requires an attacker to pass a malicious file to an application using a vulnerable version of Apache Tika. The typical attack chain is as follows:

  1. Payload Creation: An attacker creates a standard PDF document but injects a malicious XFA form into it.
  2. XXE Injection: Inside the XFA XML data, the attacker defines a DOCTYPE with an external entity. This entity points to a sensitive file on the target server (e.g., /etc/passwd or C:\Windows\win.ini) or an internal network endpoint.
  3. Delivery: The attacker uploads this PDF to a web application that uses Apache Tika for content extraction (e.g., a resume upload portal, a search engine indexing service, or a document management system).
  4. Execution: Tika parses the PDF to extract text and metadata. When it hits the XFA section, the vulnerable tika-core XML parser processes the malicious entity.
  5. Data Exfiltration: The content of the target file is read by the parser and included in the text output of Tika, which is then returned to the application (and potentially the attacker) or logged, completing the data theft.

Affected Products and Versions

The scope of this vulnerability is significantly broader than initially reported in related CVEs (such as CVE-2025-54988). It affects the Tika Core, the PDF Parser module, and legacy Parser bundles. Crucially, users running Tika 1.x are also affected.

The following table details the specific components and versions that require immediate attention:

ComponentMaven ArtifactAffected VersionsFixed Version
Apache Tika Coreorg.apache.tika:tika-core1.13 through 3.2.13.2.2
PDF Parser Moduleorg.apache.tika:tika-parser-pdf-module2.0.0 through 3.2.13.2.2
Apache Tika Parsersorg.apache.tika:tika-parsers1.13 before 2.0.02.0.0

Techniques and Tactics

This vulnerability maps to the following tactics and techniques in the MITRE ATT&CK framework, highlighting the attack vector and potential impact:

TacticTechnique IDTechnique Name
Initial AccessT1190Exploit Public-Facing Application
CollectionT1005Data from Local System
Defense EvasionT1027Obfuscated Files or Information (Embedding in PDF)

Mitigation & Remediation

To address this critical vulnerability, immediate action is required. This vulnerability replaces and expands upon the earlier reported CVE-2025-54988 (CVSS 8.4). Even if you patched based on that previous advisory, you may still be vulnerable if you did not update tika-core.

The Apache Tika project maintainers strongly urge users to take the following steps:

  • Upgrade Tika Core: This is the most critical step. Ensure you are running version 3.2.2 or later.
  • Upgrade Modules: Update the PDF parser module or the main parsers bundle depending on your Tika version.
  • Configuration Review: Review your application’s XML processing configurations. Ensure that external entity processing is explicitly disabled in any custom parser implementations.

Instantly Fix Risks with Saner Patch Management

Saner patch management is a continuous, automated, and integrated software that instantly fixes risks exploited in the wild. The software supports major operating systems like Windows, Linux, and macOS, as well as 550+ third-party applications.

It also allows you to set up a safe testing area to test patches before deploying them in a primary production environment. Saner patch management additionally supports a patch rollback feature in case of patch failure or a system malfunction.

Experience the fastest and most accurate patching software here.

Featured Posts

Open CVE-2023-49105: The ownCloud Authentication Flaw That Exposed Sensitive Credentials
CVE-2023-49105: The ownCloud Authentication Flaw That Exposed Sensitive Credentials

CVE Research

CVE-2023-49105: The ownCloud Authentication Flaw That Exposed Sensitive Credentials

Sep 25, 2026

Open Patch Analysis & Exploitation Timeline: RouterOS SSH Attacks Predate Production Fixes in CISA's September 10, 2026 KEV Additions
Patch Analysis & Exploitation Timeline: RouterOS SSH Attacks Predate Production Fixes in CISA's September 10, 2026 KEV Additions

CVE Research

Patch Analysis & Exploitation Timeline: RouterOS SSH Attacks Predate Production Fixes in CISA's September 10, 2026 KEV Additions

Two MikroTik RouterOS CVEs entered CISA KEV seven days after production fixes. Dated reporting places SSH-chain exploitation involving CVE-2026-86060 at least one calendar day before those releases; no comparable start date is established for CVE-2026-67277.

Sep 25, 2026

Open Patch Analysis & Exploitation Timeline: A Day-Old Chrome Bug and an Eight-Month-Old Fortinet Flaw Share the Same KEV Batch
Patch Analysis & Exploitation Timeline: A Day-Old Chrome Bug and an Eight-Month-Old Fortinet Flaw Share the Same KEV Batch

CVE Research

Patch Analysis & Exploitation Timeline: A Day-Old Chrome Bug and an Eight-Month-Old Fortinet Flaw Share the Same KEV Batch

Four vulnerabilities added to CISA’s KEV catalog on September 9, 2026 show widely different timelines between public disclosure and formal exploitation-based prioritization, ranging from one day to 239 days.

Sep 24, 2026

Open TA412/APT31: Mapping Threat Actor Patterns to CVE Exploitation Chains

TA412/APT31: Mapping Threat Actor Patterns to CVE Exploitation Chains

CVE Research

TA412/APT31: Mapping Threat Actor Patterns to CVE Exploitation Chains

A chronological look at how a long-running China-nexus espionage cluster evolved from server-side exploitation to a chained Chrome/Windows zero-day kit — and what that shift signals.

Sep 24, 2026