A vulnerability was found in libexpat up to 2.8.1 and classified as problematic . The affected element is an unknown function. The manipulation results in integer overflow. This vulnerability is reported as CVE-2026-56408 . The attack requires a local approach. No exploit exists. It is suggested to upgrade the affected component.