A Double Free in XSLT `show_index` has been identified in Hiawatha webserver version 11.7 which allows an unauthenticated attacker to corrupt data which may lead to arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
Mon, 26 Jan 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 26 Jan 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Double Free in XSLT `show_index` has been identified in Hiawatha webserver version 11.7 which allows an unauthenticated attacker to corrupt data which may lead to arbitrary code execution. | |
| Title | Double free in XSLT in 'show_index' | |
| References |
|
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2026-01-26T20:54:04.714Z
Reserved: 2025-08-19T17:36:13.586Z
Link: CVE-2025-57785
Updated: 2026-01-26T20:53:52.643Z
Status : Received
Published: 2026-01-26T18:16:27.570
Modified: 2026-01-26T21:15:55.420
Link: CVE-2025-57785
No data.
OpenCVE Enrichment
No data.