Libexpat Project / Libexpat
68 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-102633 | libexpat 2.7.2 through 2.8.5 Integer Overflow in expat_realloc | HIGH | 8.2 | Sep 29, 2026 |
| CVE-2026-93990 | Expat before 2.8.5 Malformed UTF-16 Acceptance via Unchecked Surrogate | HIGH | 8.7 | Sep 19, 2026 |
| CVE-2026-76641 | Expat Out-of-Bounds Read via dtdCopy | HIGH | 8.7 | Aug 20, 2026 |
| CVE-2026-76957 | libexpat: libexpat: Memory corruption vulnerability allows arbitrary code execution or denial of service | HIGH | 7.8 | Aug 20, 2026 |
| CVE-2026-76956 | libexpat: libexpat: Denial of Service via hash flooding attack with crafted XML | HIGH | 7.5 | Aug 20, 2026 |
| CVE-2026-66046 | Expat Denial of Service via storeAtts() Quadratic Complexity | HIGH | 8.7 | Aug 18, 2026 |
| CVE-2026-72522 | expat: libexpat: Denial of Service due to incorrect Unicode surrogate handling | MEDIUM | 6.2 | Aug 10, 2026 |
| CVE-2026-56412 | libexpat: libexpat: Use-after-free vulnerability due to improper handling of XML CDATA sections | MEDIUM | 5.9 | Jun 21, 2026 |
| CVE-2026-56411 | expat: libexpat: Integer Overflow Vulnerability Leading to Information Disclosure or Code Execution | MEDIUM | 6.9 | Jun 21, 2026 |
| CVE-2026-56410 | libexpat: libexpat: Integer overflow in xmlwf can lead to information disclosure and arbitrary code execution. | MEDIUM | 6.9 | Jun 21, 2026 |
| CVE-2026-56409 | xmlwf in libexpat before 2.8.2 has an integer overflow for the output filename when -d outputDir is used. | MEDIUM | 6.5 | Jun 21, 2026 |
| CVE-2026-56408 | libexpat before 2.8.2 has an integer overflow in copyString. | MEDIUM | 6.9 | Jun 21, 2026 |
| CVE-2026-56407 | libexpat: libexpat: Arbitrary code execution due to integer overflow | MEDIUM | 6.9 | Jun 21, 2026 |
| CVE-2026-56406 | libexpat: libexpat: Arbitrary code execution via integer overflow in XML_ParseBuffer | MEDIUM | 6.9 | Jun 21, 2026 |
| CVE-2026-56405 | libexpat: libexpat: Information disclosure and arbitrary code execution via integer overflow | MEDIUM | 6.9 | Jun 21, 2026 |
| CVE-2026-56404 | libexpat: libexpat: Arbitrary Code Execution via integer overflow in addBinding | MEDIUM | 6.9 | Jun 21, 2026 |
| CVE-2026-56403 | libexpat: libexpat: Arbitrary code execution due to integer overflow in storeAtts | MEDIUM | 6.9 | Jun 21, 2026 |
| CVE-2026-56132 | expat: libexpat: Arbitrary Code Execution via Heap-based Buffer Overflow | MEDIUM | 6.9 | Jun 19, 2026 |
| CVE-2026-56131 | libexpat: libexpat: Use-after-free vulnerability due to insufficient handler call depth tracking | MEDIUM | 4.9 | Jun 19, 2026 |
| CVE-2026-50219 | expat: libexpat: Use-after-free vulnerability due to improper handler call depth tracking | MEDIUM | 5.9 | Jun 4, 2026 |
| CVE-2026-45186 | libexpat: denial of service via crafted XML input | HIGH | 7.5 | May 10, 2026 |
| CVE-2026-41080 | libexpat: expat: libexpat: Denial of Service via hash flooding with crafted XML | HIGH | 7.5 | Apr 16, 2026 |
| CVE-2026-32778 | libexpat: libexpat: Denial of Service via NULL pointer dereference after out-of-memory condition | MEDIUM | 5.5 | Mar 16, 2026 |
| CVE-2026-32777 | libexpat: libexpat: Denial of Service via infinite loop in DTD content parsing | MEDIUM | 5.5 | Mar 16, 2026 |
| CVE-2026-32776 | libexpat: libexpat: Denial of Service due to NULL pointer dereference | MEDIUM | 6.2 | Mar 16, 2026 |
Showing 1 to 25 of 68 CVEs