James Clark
16 exploits
Active since Jan 2022
libexpat < 2.6.2 - XML Entity Expansion via External Parser
CVSS 7.5
libexpat < 2.6.2 - XML Entity Expansion via External Parser
CVSS 7.5
libexpat < 2.4.9 - Use-After-Free in XML_ExternalEntityParserCreate
CVSS 7.5
libexpat < 2.4.9 - Use-After-Free in XML_ExternalEntityParserCreate
CVSS 7.5
libexpat < 2.4.4 - Integer Overflow in doProlog Function
CVSS 7.5
libexpat < 2.4.5 - Improper Encoding or Escaping of Output
CVSS 9.8
libexpat < 2.4.5 - Namespace URI Injection via Namespace-Separator Character
CVSS 9.8
libexpat < 2.4.5 - Denial of Service via DTD Element Nesting
CVSS 6.5
libexpat < 2.4.5 - Integer Overflow in copyString
CVSS 7.5
libexpat < 2.4.5 - Integer Overflow in storeRawNames
CVSS 9.8
libexpat < 2.4.5 - Denial of Service via DTD Element Nesting
CVSS 6.5
libexpat < 2.4.3 - Integer Overflow in m_groupSize
CVSS 8.1
libexpat < 2.4.3 - Integer Overflow in addBinding
CVSS 9.8
libexpat < 2.4.4 - Integer Overflow in XML_GetBuffer
CVSS 9.8
libexpat < 2.4.3 - Integer Overflow via Left Shift in storeAtts
CVSS 8.8
libexpat < 2.4.3 - Integer Overflow via Left Shift in storeAtts
CVSS 8.8