libxslt vulnerabilities
CVEs whose affected-version data names the libxslt package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2025-7425High· 7.8PoCA flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents the pro…
▾ MidnightGNOME · libxml2EPSS 0.36%via NVD
CVE-2025-7424High· 7.5A flaw was found in the libxslt library
A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application…
▾ Twilightxmlsoft · libxsltEPSS 1.2%via NVD