In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.
References
Configurations
History
No history.
Information
Published : 2026-05-10 07:16
Updated : 2026-09-16 13:17
NVD link : CVE-2026-45186
Mitre link : CVE-2026-45186
CVE.ORG link : CVE-2026-45186
JSON object : View
Products Affected
libexpat_project
- libexpat
CWE
CWE-407
Inefficient Algorithmic Complexity
