VYPR
Critical severity9.8NVD Advisory· Published Feb 16, 2022· Updated Jun 17, 2026

CVE-2022-25235

CVE-2022-25235

Description

xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

63

Patches

Vulnerability mechanics

References

10

News mentions

0

No linked articles in our index yet.