Skip to content

CVE-2026-72522

CVE

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
August 31, 2026
Last Seen
September 3, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Debian has released security updates for two libraries, Expat and Libass, addressing multiple vulnerabilities. The Expat library has several CVEs, including CVE-2026-56403 to CVE-2026-56412, which involve use-after-free issues and integer overflows, potentially leading to denial of service. The Liba...

Fedora has released updates for mingw-expat to address a Denial of Service vulnerability identified as CVE-2026-72522. This vulnerability arises from improper handling of Unicode surrogate pairs, potentially allowing attackers to disrupt services. The affected versions are expat-2.8.2 and earlier, w...

Public Exploits

Checking GitHub for proof-of-concept code…