Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

NaturalIntelligence — Vulnerabilities & Security Advisories 12

Browse all 12 CVE security advisories affecting NaturalIntelligence. AI-powered Chinese analysis, POCs, and references for each vulnerability.

NaturalIntelligence develops AI-powered threat detection systems for enterprise security operations. Historically, the product has been associated with multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, accounting for its 9 recorded CVEs. The platform's complex integrations with third-party APIs and custom machine learning models have introduced security challenges, particularly in input validation and access control. While no major public security incidents have been documented, the consistent pattern of vulnerabilities suggests ongoing difficulties in securing its AI components and extensive plugin ecosystem, requiring organizations to implement strict network segmentation and regular patching.

Top products by NaturalIntelligence: fast-xml-parser fast-xml-builder
CVE ID Title CVSS Severity Published
CVE-2026-73569 fast-xml-parser: Repeated DOCTYPE declarations reset entity expansion limits — fast-xml-parser CWE-776 8.7 High 2026-08-13
CVE-2026-44664 fast-xml-builder: Comment Value bypass regex — fast-xml-builder CWE-91 6.1 Medium 2026-05-13
CVE-2026-44665 fast-xml-builder: Attribute values with unwanted quotes can bypass malicious or unwanted attributes — fast-xml-builder CWE-91 6.1 Medium 2026-05-13
CVE-2026-41650 fast-xml-parser XMLBuilder: XML Comment and CDATA Injection via Unescaped Delimiters — fast-xml-parser CWE-91 6.1 Medium 2026-05-07
CVE-2026-33349 fast-xml-parser: Entity Expansion Limits Bypassed When Set to Zero Due to JavaScript Falsy Evaluation — fast-xml-parser CWE-1284 5.9 Medium 2026-03-24
CVE-2026-33036 fast-xml-parser affected by numeric entity expansion bypassing all entity expansion limits (incomplete fix for CVE-2026-26278) — fast-xml-parser CWE-776 7.5 High 2026-03-20
CVE-2026-27942 fast-xml-parser has stack overflow in XMLBuilder with preserveOrder — fast-xml-parser CWE-120 7.5AI High AI 2026-02-26
CVE-2026-25896 fast-xml-parser has an entity encoding bypass via regex injection in DOCTYPE entity names — fast-xml-parser CWE-185 9.3 Critical 2026-02-20
CVE-2026-26278 fast-xml-parser affected by DoS through entity expansion in DOCTYPE (no expansion limit) — fast-xml-parser CWE-776 7.5 High 2026-02-19
CVE-2026-25128 fast-xml-parser has RangeError DoS Numeric Entities Bug — fast-xml-parser CWE-20 7.5 High 2026-01-30
CVE-2024-41818 ReDOS at currency parsing fast-xml-parser — fast-xml-parser CWE-400 7.5 High 2024-07-29
CVE-2023-34104 Regex Injection via Doctype Entities — fast-xml-parser CWE-400 7.5 High 2023-06-06

This page lists every published CVE security advisory associated with NaturalIntelligence. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.