SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2025-71346

UNKNOWN · CVSS N/A

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-09-20

CyberRota Analysis

AI-Generated

Nokogiri versions prior to 1.18.8 are vulnerable due to their inclusion of an outdated libxml2 library, which contains a heap-based buffer under-read vulnerability. This flaw can be exploited when processing untrusted XML Schemas or documents, potentially leading to information disclosure or application crashes. Developers and organizations using Nokogiri for XML processing should prioritize upgrading to mitigate this low-severity risk.

CVE
CVE-2025-71346
Severity
UNKNOWN
CVSS
N/A
EPSS
N/A

Original NVD Description

Rejected reason: This CVE ID has been rejected as a duplicate.