CVE-2026-75432

Medium severity, CVSS 5.1. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue in yaml-cpp 0.9.0 allows a remote attacker to obtain sensitive information via the src/scanner.cpp, Scanner::PopIndent(), and Scanner::PushIndentTo() components

Published 2026-09-22. Last modified 2026-10-03.