Access to external entities when parsing XML documents can lead to XML external entity (XXE) attacks. This flaw allows a remote attacker to potentially retrieve the content of arbitrary files by sending specially crafted HTTP requests.
View the template here CVE-2022-2414.yaml
References:
https://nvd.nist.gov/vuln/detail/CVE-2022-2414