Libxml2 — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
8
occurrences
First Seen
November 9, 2025
Last Seen
February 21, 2026

Related Threat Clusters

  • Mageia 9 libxml2 Critical DoS Vulnerabilities Identified

    Mageia 9 has been found to have multiple critical vulnerabilities in the libxml2 library, leading to denial of service (DoS) conditions. The issues include unbounded recursion, heap use after free, and various types of…

    4 articles · Updated January 30, 2026
  • Dell OS10 and ICS Products Face Multiple Vulnerabilities Leading to RCE Risks

    Multiple vulnerabilities have been identified in Dell Networking OS10 and various ICS products from Honeywell, GE, Delta Electronics, and Siemens. Exploitation of these vulnerabilities could result in remote code…

    2 articles · Updated February 21, 2026
  • Multiple Vulnerabilities Discovered in XML Parsing Libraries

    Two vulnerabilities have been reported in widely used XML parsing libraries. CVE-2024-50602 affects libexpat versions prior to 2.6.4, causing a crash in the XML_ResumeParser function. CVE-2024-34459 impacts xmllint from…

    2 articles · Updated February 18, 2026
  • Multiple CVEs Affecting XML Libraries Published on February 18, 2026

    Two new Common Vulnerabilities and Exposures (CVEs) were published on February 18, 2026. CVE-2022-49043 affects libxml2 versions before 2.11.0, introducing a use-after-free vulnerability, while CVE-2024-28757 in…

    8 articles · Updated February 18, 2026
  • Multiple Vulnerabilities in libxml2 and libxslt Discovered

    Multiple vulnerabilities affecting libxml2 and its Python bindings were discovered, allowing attackers to potentially crash the software or execute arbitrary code. Specifically, issues were found in the handling of…

    3 articles · Updated November 27, 2025

Recent Intelligence Reports

  • Dell OS10 Command Injection and RCE Risk | Threat Intel Reports — Smarttech247 · February 21, 2026
  • CVE-2022-49043 xmlXIncludeAddNode in xinclude.c in libxml2 before 2.11.0 has a use-after — Api.Msrc.Microsoft · February 18, 2026
  • CVE-2025-6021 Libxml2: integer overflow in xmlbuildqname() leads to stack buffer overflow in libxml2 — Api.Msrc.Microsoft · February 18, 2026
  • CVE-2024-34459 An issue was discovered in xmllint (from libxml2) before 2.11.8 and 2.12.x before 2.12.7. Formatting error messages with xmllint --htmlout can result in a buffer over — Api.Msrc.Microsoft · February 18, 2026
  • CVE-2025-6170 Libxml2: stack buffer overflow in xmllint interactive shell command handling — Api.Msrc.Microsoft · February 18, 2026
  • Sicherheit: Mehrere Probleme in libxml2 - Pro — Pro-Linux.De · February 18, 2026
  • USN-7896-1: libxml2 vulnerabilities — Ubuntu · November 27, 2025
  • Mageia 9: libxml2 Critical DoS Vulnerabilities MGASA-2025 — Linuxsecurity · November 9, 2025

CVSS v3.1 Breakdown