fix CRITICAL xxe (XML External Entity) issues identified in sonarcloud