CVE-2025-6498 Information

Description

A vulnerability classified as problematic has been found in HTACG tidy-html5 5.8.0. Affected is the function defaultAlloc of the file src/alloc.c. The manipulation leads to memory leak. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.

Reference

https://github.com/htacg/tidy-html5/issues/1152 https://github.com/htacg/tidy-html5/issues/1152 https://github.com/user-attachments/files/20438303/tidy-html5_crash_3.txt https://vuldb.com/?ctiid.313614 https://vuldb.com/?id.313614 https://vuldb.com/?submit.601009

CNNVD-202506-2931 (Published: 2025-06-23)

Share on: