soup_cookie_jar_get_cookies in soup-cookie-jar.c in libsoup allows attackers to have unspecified impact via an empty hostname. https://nvd.nist.gov/vuln/detail/CVE-2018-12910