CVE-2021-26948
Null pointer dereference in the htmldoc v1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of service via a crafted html file.
Scoring
- CVSS base score
- 0.01
- EPSS probability
- 0.14%
- CWE
- CWE-479
- Published
- 2022-03-03
- Last modified
- 2026-03-13
Affected products
- n/a htmldoc
Weakness type
Related vulnerabilities
- CVE-2026-44011 — Craft CMS: Potential authenticated Remote Code Execution via malicious attached Behavior