BlogEngine 3.3 XML External Entity Injection

BlogEngine 3.3 XML External Entity Injection
BlogEngine version 3.3 suffers from an XML external entity injection vulnerability.