CVE-2019-16162: K-Takata Onigmo

High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.

Onigmo through 6.2.0 has an out-of-bounds read in parse_char_class because of missing codepoint validation in regenc.c.

Affected products

  • K-Takata Onigmo: up to and including 6.2.0

Published 2019-09-09. Last modified 2026-06-17.