CVE-2019-16161: K-Takata Onigmo

High severity, CVSS 7.5. EPSS: 2.1% chance of exploitation in the next 30 days.

Onigmo through 6.2.0 has a NULL pointer dereference in onig_error_code_to_str because of fetch_token in regparse.c.

Affected products

  • K-Takata Onigmo: up to and including 6.2.0

Published 2019-09-09. Last modified 2026-06-17.