Skip to content
Noroxi

NaturalIntelligence records

10 published records for vendor naturalintelligence.

All records

10 records
  • fast-xml-parser has an entity encoding bypass via regex injection in DOCTYPE entity names

    CriticalCVSS 9.3No exploitEPSS 0%

    naturalintelligence · fast-xml-parserFeb 20, 2026

  • Regex Injection via Doctype Entities

    HighCVSS 7.5No exploitEPSS 1%

    naturalintelligence · fast-xml-parserJun 6, 2023

  • fast-xml-parser affected by DoS through entity expansion in DOCTYPE (no expansion limit)

    HighCVSS 7.5No exploitEPSS 1%

    naturalintelligence · fast-xml-parserFeb 19, 2026

  • ReDOS at currency parsing fast-xml-parser

    HighCVSS 7.5No exploitEPSS 1%

    naturalintelligence · fast-xml-parserJul 29, 2024

  • fast-xml-parser affected by numeric entity expansion bypassing all entity expansion limits (incomplete fix for CVE-2026-26278)

    HighCVSS 7.5No exploitEPSS 1%

    naturalintelligence · fast-xml-parserMar 20, 2026

  • fast-xml-parser has RangeError DoS Numeric Entities Bug

    HighCVSS 7.5No exploitEPSS 1%

    naturalintelligence · fast-xml-parserJan 30, 2026

  • fast-xml-parser before 4.1.2 allows __proto__ for Prototype Pollution.

    MediumCVSS 6.5No exploitEPSS 1%

    naturalintelligence · fast xml parserDec 12, 2023

  • fast-xml-parser XMLBuilder: XML Comment and CDATA Injection via Unescaped Delimiters

    MediumCVSS 6.1No exploitEPSS 0%

    naturalintelligence · fast-xml-parserMay 7, 2026

  • fast-xml-parser: Entity Expansion Limits Bypassed When Set to Zero Due to JavaScript Falsy Evaluation

    MediumCVSS 5.9No exploitEPSS 0%

    naturalintelligence · fast-xml-parserMar 24, 2026

  • fast-xml-parser has stack overflow in XMLBuilder with preserveOrder

    LowCVSS 2.7No exploitEPSS 1%

    naturalintelligence · fast-xml-parserFeb 25, 2026