Security GetSimple CMS 3.3.4 XML External Entity Injection December 31, 2014 007admin Leave a comment GetSimple CMS versions 3.1.1 through 3.3.4 suffer from an XML external entity injection vulnerability.