A NULL pointer dereference vulnerability was found in libxml2 when processing XPath XML expressions. This flaw allows an attacker to craft a malicious XML input to libxml2, leading to a denial of service.
{ "urgency": "not yet assigned" }
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-49795.json"