CVE-2026-77214 - libexpat Heap Buffer Over-read in xmlparse.c via XML_ParseBuffer
CVE ID :CVE-2026-77214 Published : Oct. 7, 2026, 2:35 p.m. | 53 minutes ago Description :libexpat before commit 13c5f63 contains a heap buffer over-read vulnerability in xmlparse.c. XML_ParseBuffer advances the parse buffer end with parser->m_bufferEnd += len using a caller-supplied length...