Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

libxml2 — Vulnerabilities & Security Advisories 28

All 28 CVE vulnerabilities found in libxml2, with AI-generated Chinese analysis, references, and POCs.

This page aggregates known security weaknesses affecting the libxml2 XML parsing library, specifically focusing on memory safety defects. It collects documented incidents ranging from null pointer dereferences to buffer overflows that have impacted various versions of the product over time. Readers can use this repository to track advisory histories, analyze the evolution of specific weakness classes, and review the full vulnerability timeline for this open-source component. The compilation is designed to help security engineers and developers identify patterns in past exploits and understand the structural risks inherent in C-based XML processing. By centralizing these records, the page provides a factual overview of how implementation flaws in libxml2 have been identified, categorized, and resolved across its development cycle.

Vendor: n/a

CVE ID Title CVSS Severity Published
CVE-2026-86144 Xmlsoft libxml2 权限许可和访问控制问题漏洞 CWE-669 5.6 Medium 2026-09-05
CVE-2026-86143 Xmlsoft libxml2 数字错误漏洞 CWE-192 6.9 Medium 2026-09-05
CVE-2026-86142 Xmlsoft libxml2 缓冲区错误漏洞 CWE-122 6.9 Medium 2026-09-05
CVE-2026-86141 Xmlsoft libxml2 异常处理不当漏洞 CWE-252 2.9 Low 2026-09-05
CVE-2026-86140 Xmlsoft libxml2 缓冲区错误漏洞 CWE-121 8.0 High 2026-09-05
CVE-2026-86139 Xmlsoft libxml2 数字错误漏洞 CWE-190 6.9 Medium 2026-09-05
CVE-2026-86138 Xmlsoft libxml2 数字错误漏洞 CWE-190 6.9 Medium 2026-09-05
CVE-2026-86137 Xmlsoft libxml2 缓冲区错误漏洞 CWE-125 2.9 Low 2026-09-05
CVE-2026-11979 Stack-Based Buffer Overflow in libxml2 CWE-121 - - 2026-06-29
CVE-2026-6653 libxml2: Use after free in xmlParseInternalSubset via improper entity resolution handling CWE-416 - - 2026-06-22
CVE-2025-9714 Stack overflow in libxml2 CWE-674 6.2 Medium 2025-09-10
CVE-2025-8732 libxml2 xmlcatalog xmlParseSGMLCatalog recursion CWE-674 3.3 Low 2025-08-08
CVE-2025-7425 Libxslt: libxml2: heap use-after-free in libxslt caused by atype corruption in xmlattrptr CWE-416 7.8 High 2025-07-10
CVE-2025-49795 Libxml: null pointer dereference leads to denial of service (dos) CWE-825 7.5 High 2025-06-16
CVE-2025-32415 libxml2 安全漏洞 CWE-1284 2.9 Low 2025-04-17
CVE-2025-32414 libxml2 安全漏洞 CWE-393 5.6 Medium 2025-04-08
CVE-2025-24928 libxml2 安全漏洞 CWE-121 7.8 High 2025-02-18
CVE-2025-27113 libxml2 安全漏洞 CWE-476 2.9 Low 2025-02-18
CVE-2024-56171 libxml2 安全漏洞 CWE-416 7.8 High 2025-02-18
CVE-2022-49043 libxml2 安全漏洞 CWE-416 8.1 High 2025-01-26
CVE-2024-40896 libxml2 安全漏洞 CWE-611 7.5AI High AI 2024-12-23
CVE-2016-3709 libxml2 跨站脚本漏洞 CWE-79 6.1 - 2022-07-28
CVE-2021-3541 libxml2 输入验证错误漏洞 7.5 - 2021-07-09
CVE-2021-3516 libxml2 资源管理错误漏洞 CWE-416 7.8 - 2021-06-01
CVE-2021-3517 libxml2 缓冲区错误漏洞 CWE-787 8.6 - 2021-05-19
CVE-2021-3518 libxml2 资源管理错误漏洞 CWE-416 8.8 - 2021-05-18
CVE-2021-3537 libxml2 代码问题漏洞 CWE-476 5.9 - 2021-05-14
CVE-2016-9597 Libxml2 缓冲区错误漏洞 CWE-674 7.5 - 2018-07-30

All 28 known CVE vulnerabilities affecting libxml2 with full Chinese analysis, references, and POCs where available.