x
xmlsoft
Security Risk Profile
59
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 148 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 2, 2003 to present
148
Total CVEs
84
Critical+High
0
Exploited
15
Unpatched
Threat Assessment
Avg CVSS
6.9
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
15
Critical/High
Risk Level
59/100
medium
📈 8 in Last 30 Days
Severity Distribution
Critical
20High
64Medium
56Low
7Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
14Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
57
2
Use After Free
23
3
Integer Overflow
17
4
Input Validation
15
5
Null Pointer Dereference
13
Most Affected Products
1. XMLSoft Libxml2510
2. Xmlsoft Libxml2499
3. Google Chrome244
4. Apple iPhone OS223
5. Xmlsoft Libxslt190
Recent Vulnerabilities
See more →CVE-2026-86144
CVSS 7.8high
Sep 5, 2026
CVE-2026-86143
CVSS 7.3high
Sep 5, 2026
CVE-2026-86142
CVSS 7.8high
Sep 5, 2026
CVE-2026-86141
CVSS 3.3low
Sep 5, 2026
CVE-2026-86140
CVSS 8.0high
Sep 5, 2026
CVE-2026-86139
CVSS 7.8high
Sep 5, 2026
CVE-2026-86138
CVSS 7.8high
Sep 5, 2026
CVE-2026-86137
CVSS 6.1medium
Sep 5, 2026
CVE-2026-11979
CVSS 1.8low
Stack-Based Buffer Overflow in libxml2
Jun 29, 2026🔧 No Patch
CVE-2026-6653
CVSS 7.0high
libxml2: Use after free in xmlParseInternalSubset via improper entity resolution handling
Jun 22, 2026🔧 No Patch
Monitor xmlsoft in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.