pkg:Debian/libxslt
51 total CVEsCRITICAL6HIGH21MEDIUM6LOW1
✅ Check your installed version
All known vulnerabilities
- from 0, < 1.1.32-2.1
- from 0, < 1.1.28-2+deb8u4
- CRITICAL9.8CVE-2016-4610libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2,…from 0, < 1.1.29-1
- from 0, < 1.1.28-2+deb8u5
- from 0, < 1.1.29-1
- CRITICAL9.8CVE-2016-4608libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2,…from 0, < 1.1.29-1
- from 0, < 1.1.34-4+deb11u1
- from 0, < 1.1.34-4+deb11u1
- from 0, < 1.1.29-2.1
- from 0, < 1.1.26-14.1+deb7u3
- from 0, < 1.1.29-2
- from 0, < 1.1.26-14.1+deb7u2
- from 0, < 1.1.28-2+deb8u2
- HIGH8.8CVE-2016-1841libxslt, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to ex…from 0, < 1.1.29-1
- HIGH7.8CVE-2025-7425Libxslt: libxml2: heap use-after-free in libxslt caused by atype corruption in xmlattrptrfrom 0
- HIGH7.8CVE-2025-24855numbers.c in libxslt before 1.1.43 has a use-after-free because, in nested XPath evaluations, an XPath context node can be modified but nev…from 0, < 1.1.34-4+deb11u2
- from 0, < 1.1.34-4+deb11u2
- from 0, < 1.1.34-4+deb11u2
- from 0, < 1.1.35-1+deb12u1
- from 0, < 1.1.34-4+deb11u3
- from 0, < 1.1.34-2
- from 0, < 1.1.32-2.2~deb10u2
- from 0, < 1.1.32-2.2
- from 0, < 1.1.28-2+deb8u6
- from 0, < 1.1.32-2.1
- HIGH7.5CVE-2016-1684numbers.c in libxslt before 1.1.29, as used in Google Chrome before 51.0.2704.63, mishandles the i format token for xsl:number data, which…from 0, < 1.1.29-1
- HIGH7.5CVE-2016-1683numbers.c in libxslt before 1.1.29, as used in Google Chrome before 51.0.2704.63, mishandles namespace nodes, which allows remote attackers…from 0, < 1.1.29-1
- from 0, < 1.1.35-1+deb12u2
- from 0, < 1.1.34-4+deb11u3
- from 0, < 1.1.34-4+deb11u3
- from 0
- from 0, < 1.1.32-2.1
- MEDIUM5.3CVE-2015-9019In libxslt 1.1.29 and earlier, the EXSLT math.random function was not initialized with a random seed during startup, which could cause usag…from 0
- LOW3.1CVE-2025-11731A flaw was found in the exsltFuncResultComp() function of libxslt, which handles EXSLT <func:result> elements during stylesheet parsing.from 0
- from 0, < 1.1.28-2+deb8u1
- from 0, < 1.1.26-14.1+deb7u1
- from 0, < 1.1.28-2.1
- from 0, < 1.1.26-6+squeeze3
- from 0, < 1.1.26-14.1
- —CVE-2012-2893Double free vulnerability in libxslt, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or…from 0, < 1.1.26-14
- —CVE-2012-2871libxml2 2.9.0-rc1 and earlier, as used in Google Chrome before 21.0.1180.89, does not properly support a cast of an unspecified variable du…from 0, < 1.1.26-14
- from 0, < 1.1.26-14
- from 0, < 1.1.26-6+squeeze2
- —CVE-2012-2825The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation)…from 0, < 1.1.26-13
- —CVE-2011-3970libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspeci…from 0, < 1.1.26-11
- —CVE-2011-1202The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other pr…from 0, < 1.1.26-7
- from 0, < 1.1.19-3
- from 0, < 1.1.24-1+lenny1
- from 0, < 1.1.24-2
- from 0, < 1.1.19-2
- from 0, < 1.1.24-1