Mulesoft APIkit through 1.3.0 allows XXE because of validation/RestXmlSchemaValidator.java References https://nvd.nist.gov/vuln/detail/CVE-2020-10991 https://github.com/mulesoft/apikit/issues/547 https://github.com/advisories/GHSA-jffq-528j-mp6c