https://seclists.org/oss-sec/2026/q2/486: libexpat 2.8.1 fixes CVE-2026-45186 (denial of service)
Published May 11, 2026
·Updated
Affected Software
1 affected component
Expat libexpat<2.8.1
Frequently Asked Questions
1
What is the severity of CVE-2026-45186?
CVE-2026-45186 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2026-45186?
To fix CVE-2026-45186, update to libexpat version 2.8.1 or later.
3
What type of attacks does CVE-2026-45186 enable?
CVE-2026-45186 enables denial of service attacks through crafted XML input.
4
What component is affected by CVE-2026-45186?
CVE-2026-45186 affects the libexpat XML parsing library.
5
When was CVE-2026-45186 published?
CVE-2026-45186 was published on May 11, 2026.