libexpat before 2.7.6 uses insufficient entropy, and thus hash flooding can occur via a crafted XML document.
libexpat before 2.7.6 uses insufficient entropy, and thus hash flooding can occur via a crafted XML document.
AV:LAttack VectorAC:HAttack ComplexityPR:NPrivileges RequiredUI:NUser InteractionS:UScopeC:NConfidentialityI:NIntegrityA:LAvailabilityGet the full picture for CVE-2026-41080 and every CVE in our database. Create a free account — no credit card required.
Create Free Account