Sploitus

CVE-2025-49796

No indexed exploits for CVE-2025-49796 yet

A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory corruption issue. This flaw allows an attacker to craft a malicious XML input file that can lead libxml to crash, resulting in a denial of service or other possible undefined behavior due to sensitive data being corrupted in memory.

CVSS 3.1
9.1 CRITICAL
EPSS
1.5% (72th percentile)
Weakness
CWE-125
NVD status
Deferred
Published
2025-06-16

Workaround

There's no available mitigation other than to avoid processing untrusted XML documents if the user is unable/unwilling to update the library.

CVE-2025-49796 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2025-49796 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2025-49796 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.