CVE-2026-91765 | PHP up to 8.2.33/8.3.34/8.4.25/8.5.10 SOAP XML Parser cleanup_xml_node recursion
A vulnerability classified as problematic has been found in PHP up to 8.2.33/8.3.34/8.4.25/8.5.10. Affected by this vulnerability is the function cleanup_xml_node of the component SOAP XML Parser. The manipulation leads to uncontrolled recursion.
This vulnerability is referenced as CVE-2026-91765. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More