SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2025-71407

UNKNOWN · CVSS N/A

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-09-20

CyberRota Analysis

AI-Generated

Nokogiri versions prior to 1.18.3 are vulnerable to a stack buffer overflow and a use-after-free vulnerability in libxml2, which can be exploited through malicious DTD content or untrusted XML Schemas. This could lead to denial of service or potentially allow attackers to execute arbitrary code. Organizations using Nokogiri should prioritize upgrading to the latest version to mitigate these critical risks.

CVE
CVE-2025-71407
Severity
UNKNOWN
CVSS
N/A
EPSS
N/A

Original NVD Description

Rejected reason: This CVE ID has been rejected as a duplicate.