ThreatCluster

Multiple Vulnerabilities Discovered in XML Parsing Libraries

First seen 18 Feb 2026, 13:23 UTC Api.Msrc.Microsoft 71% similarity 43

Article Content

Browse articles
ThreatCluster

Two vulnerabilities have been reported in widely used XML parsing libraries. CVE-2024-50602 affects libexpat versions prior to 2.6.4, causing a crash in the XML_ResumeParser function. CVE-2024-34459 impacts xmllint from libxml2 versions before 2.11.8 and 2.12.x before 2.12.7, leading to buffer overflows when formatting error messages.

ThreatCluster AI

Timeline

2024-05-13
CVE-2024-34459 published
2024-10-27
CVE-2024-50602 published
2026-02-18
Information published about CVE-2024-50602
2026-02-18
Information published about CVE-2024-34459

Community

Browse all →