HIGH7.5
GHSA-jv72-59wq-8rxm
libxmljs has segmentation fault, potentially leading to a denial-of-service (DoS)
Details
A vulnerability exists in the libxmljs 1.0.11 when parsing a specially crafted XML document. Accessing the internal _ref property on entity_ref and entity_decl nodes causes a segmentation fault, potentially leading to a denial-of-service (DoS).
Are you affected?
Enter the version of the package you're using.
Affected packages
npm/libxmljs
Introduced in:
0No fixed version published yet for libxmljs (npm). Pin to a known-safe version or switch to an alternative.