VulnSea

libexpat_project has 4 CVEs on record. 3 were published in the last 90 days. The busiest recent month was August 2026 with 3. The median CVSS is 5.4 (medium).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
5.4
Publish → KEV
Last 90 days
3 prev 1

Products

  • libexpat 4
4
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

libexpat_project vulnerabilities

CVEs affecting libexpat_project, newest first. Open any entry for full detail, references, and exploit status.

4 CVEsRSS

CVE-2026-76957Medium· 4.9
1mo ago

libexpat before 2.8.4 lacks handler call depth tracking with custom encoding callbacks

libexpat before 2.8.4 lacks handler call depth tracking with custom encoding callbacks. Thus, a use-after-free can occur. NOTE: this is similar to CVE-2026-50219, CVE-2026-56131 and CVE-2026-56412.

Sunlitlibexpat_project · libexpatEPSS 0.11%via NVD
CVE-2026-76956Medium· 5.9
1mo ago

In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in being vulnerable to hash flooding attacks, causing a denial of service via crafted XML content.

In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in being vulnerable to hash flooding attacks, causing a denial of service via crafted XML content.

Sunlitlibexpat_project · libexpatEPSS 0.29%via NVD
CVE-2026-66046High· 7.5
1mo ago

Expat through 2.8.3 contains a denial of service vulnerability caused by quadratic algorithmic complexity in the storeAtts() function in xmlparse.c, where processing N specified attributes with non-normalized values triggers an O(N^2) li…

Expat through 2.8.3 contains a denial of service vulnerability caused by quadratic algorithmic complexity in the storeAtts() function in xmlparse.c, where processing N specified attributes with non-normalized values triggers an O(N^2) li…

Twilightlibexpat_project · libexpatEPSS 0.61%via NVD
CVE-2026-45186Low· 2.9⚖ disputed
4mo ago

In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.

In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.

Sunlitlibexpat_project · libexpatEPSS 0.46%via NVD
libexpat_project vulnerabilities (CVEs) · VulnSea