VYPR
Unrated severityNVD Advisory· Published Feb 16, 2022· Updated May 5, 2025

CVE-2022-25235

CVE-2022-25235

Description

xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.

Affected products

53

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

10

News mentions

0

No linked articles in our index yet.