← Back

Tinyxml2 Project

tinyxml2_project

3 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Tinyxml2
tinyxml2

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tinyxml2 Project
1Tinyxml2
Jun 17, 2026
Oct 27, 2024
N/A· v4
6.5 MEDIUM· v3
N/A· v2
TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/digit, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRef.
1Tinyxml2 Project
1Tinyxml2
Jun 17, 2026
Oct 27, 2024
N/A· v4
6.5 MEDIUM· v3
N/A· v2
TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/16, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRef.
1Tinyxml2 Project
1Tinyxml2
Nov 21, 2024
May 16, 2018
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::Parse function in libtinyxml2.so. NOTE: The tinyxml2 developers have determined that the reported overflow is due to improper use of the library and no...Show more
TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::Parse function in libtinyxml2.so. NOTE: The tinyxml2 developers have determined that the reported overflow is due to improper use of the library and not a vulnerability in tinyxml2Show less