Skip to main content
Echelon
Graph
Product
Enterprise
Compliance
Pulse
Exposures
AI Analyst
Compare
Radar
Login
Start Free
Pulse
›
Vendor Advisories
›
Microsoft Security Response Center (MSRC)
›
CVE-2026-86139
CVE-2026-86139
Medium
CVSS
6.9
In libxml2 before 2.15.4, xmlURIEscapeStr in uri.c has an integer overflow.
Vendor
Microsoft Security Response Center (MSRC)
Published
September 11, 2026
Last Modified
—
🔗 CVE IDs covered (1)
CVE-2026-86139 →
🎯 Affected products
1
azl3 libxml2 2.11.5-10 on Azure Linux 3.0
✅ Remediation
Security Update
🔗 References (2)
advisory
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-86139
patch
https://learn.microsoft.com/en-us/azure/azure-linux/tutorial-azure-linux-upgrade