CVE-2026-6732
πΆ mediumSummary
A flaw was found in libxml2. This vulnerability occurs when the library processes a specially crafted XML Schema Definition (XSD) validated document that includes an internal entity reference. An attacker could exploit this by providing a malicious document, leading to a type confusion error that causes the application to crash. This results in a denial of service (DoS), making the affected system or application unavailable.
CVSS Score
6.5
Medium
EPSS Score
0.1
Exploit Probability
Published Date
2026-04-23
First Seen: 2026-04-27
π Relative Risk Intelligence
This CVE is Lower Risk - more severe than 47.9% of all 322,079 vulnerabilities in our database.
#167,935
Below average severity
Severity Percentile
π― CISA SSVC Assessment Updated: Apr 24, 2026
π Exploitation Status
None
No known exploits
βοΈ Automatable
NO
Requires human interaction
π₯ Technical Impact
Partial
Limited system impact
π Discovered By
Red Hat would like to thank Ariel Schon for reporting this issue.
SSVC data provided by
CISA
Last Modified
2026-05-15
Source
NVD π
CVSS Vector 3.1
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE IDs (Weakness Types)