-Infinity
0

Vendor Risk Score

See how expat compares to other vendors in security performance

View Risk Score →

Expat libexpatUse After Free

Risk 45
Severity
5.9
First published (updated )

Expat libexpatInteger Overflow

Risk 61
Severity
6.9
First published (updated )

Expat libexpatInteger Overflow

Risk 61
Severity
6.9
First published (updated )

Expat libexpatInteger Overflow

Risk 57
Severity
6.5
First published (updated )

Expat libexpatInteger Overflow

Risk 61
Severity
6.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Expat libexpatInteger Overflow

Risk 61
Severity
6.9
First published (updated )

Expat libexpatInteger Overflow

Risk 61
Severity
6.9
First published (updated )

Expat libexpatInteger Overflow

Risk 61
Severity
6.9
First published (updated )

Expat libexpatInteger Overflow

Risk 61
Severity
6.9
First published (updated )

Expat libexpatInteger Overflow

Risk 61
Severity
6.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Expat libexpatBuffer Overflow

Risk 61
Severity
6.9
First published (updated )

Expat libexpatUse After Free

Risk 39
Severity
4.9
First published (updated )

Expat libexpatUse After Free

Risk 45
Severity
5.9
First published (updated )

oss-seclibexpat 2.8.1 fixes CVE-2026-45186 (denial of service)

Python PythonThe expat and elementtree parsers use insufficient entropy for XML hash-flooding protection

Risk 32
Severity
6.3
EPSS
0.06%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Expat libexpatIn libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a d…

Risk 33
Severity
7
First published (updated )

Expat libexpatlibexpat 2.8.1 fixes CVE-2026-45186 (denial of service)

Risk 46
Severity
7.5
First published (updated )

oss-seclibexpat 2.8.0 fixes CVE-2026-41080 (insufficient entropy)

Libexpat Project Libexpatlibexpat 2.8.0 fixes CVE-2026-41080 (insufficient entropy)

Risk 46
Severity
7.5
First published (updated )

oss-seclibexpat 2.7.5 fixes the vulnerabilities (2x null def, 1x infinite loop)

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Expat ExpatWhen an Expat parser with a registered ElementDeclHandler parses an inline document type definition …

Risk 19
Severity
4
First published (updated )

expat looking for help with another unfixed non-public denial-of-service vulnerability [CVE-2025-66382]

Expat libexpatlibexpat in Expat before 2.7.2 allows attackers to trigger large dynamic memory allocations via a sm…

Risk 33
Severity
7
First published (updated )

F5 BIG-IPlibexpat 2.7.2 fixes CVE-2025-59375 (DoS, CWE-770)

Risk 48
Severity
7.5
First published (updated )

expat vulnerability CVE-2024-8176 / impact of cursion stack overflow vulnerabilities

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

expat vulnerability CVE-2024-8176 / impact of cursion stack overflow vulnerabilities

[CVE-2024-8176] Long linear chains of entities crash Expat with stack overflow due to use of unlimited cursion

Expat libexpatAn issue was discovered in libexpat before 2.6.4. There is a crash within the XML_ResumeParser funct…

Risk 18
Severity
4
First published (updated )

Apple iPadOSLibexpat: expat: improper restriction of xml entity expansion depth in libexpat

Risk 48
Severity
7.5
First published (updated )

Expat libexpatThe libexpat library is vulnerable to a stack overflow due to uncontrolled recursion when processing…

Risk 19
Severity
4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203