Vulnerability index

Browse CVEs

131 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Mupdf MEDIUM 6.5
CVE-2025-71382

MuPDF before 1.27.0-rc1 contains an uncontrolled recursion vulnerability in the EPUB CSS rendering engine that allows remote attackers to cause a den…

Fix: 1.27.0+
Fix from $1,600 2026-06-23
Mupdf MEDIUM 6.1
CVE-2026-7233

A vulnerability was determined in Artifex MuPDF up to 1.28.0. The impacted element is the function fz_subset_cff_for_gids of the file subset-cff.c of…

Fix: after 1.27.2
Fix from $1,600 2026-04-28
Mupdf HIGH 7.5
CVE-2026-25556

MuPDF versions 1.23.0 through 1.27.0 contain a double-free vulnerability in fz_fill_pixmap_from_display_list() when an exception occurs during displa…

Fix: after 1.27.0
Fix from $1,950 2026-02-06
Mupdf HIGH 7.5
CVE-2025-55780

A null pointer dereference occurs in the function break_word_for_overflow_wrap() in MuPDF 1.26.4 when rendering a malformed EPUB document. Specifical…

Fix: 1.26.7+
Fix from $1,950 2025-09-23
Ghostscript MEDIUM 5.5
CVE-2025-59799

Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdfmark_coerce_dest in devices/vector/gdevpdfm.c via a large size value.

Fix: after 10.05.1
Fix from $1,600 2025-09-22
Ghostscript MEDIUM 5.5
CVE-2025-59800

In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in …

Fix: after 10.05.1
Fix from $1,600 2025-09-22
Ghostscript MEDIUM 5.5
CVE-2025-59798

Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdf_write_cmap in devices/vector/gdevpdtw.c.

Fix: after 10.05.1
Fix from $1,600 2025-09-22
Mupdf MEDIUM 6.5
CVE-2025-46206

An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utilit…

Fix: after 1.25.6
Fix from $1,600 2025-08-04
Ghostscript CRITICAL 9.8
CVE-2025-27836

An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.

Fix: 10.05.0+
Fix from $2,300 2025-03-25
Ghostscript CRITICAL 9.8
CVE-2025-27837

An issue was discovered in Artifex Ghostscript before 10.05.0. Access to arbitrary files can occur through a truncated path with invalid UTF-8 charac…

Fix: 10.05.0+
Fix from $2,300 2025-03-25
Ghostscript HIGH 7.8
CVE-2025-27835

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs when converting glyphs to Unicode in psi/zbfont.c.

Fix: 10.05.0+
Fix from $1,950 2025-03-25
Ghostscript CRITICAL 9.8
CVE-2025-27831

An issue was discovered in Artifex Ghostscript before 10.05.0. The DOCXWRITE TXTWRITE device has a text buffer overflow via long characters to device…

Fix: 10.05.0+
Fix from $2,300 2025-03-25
Ghostscript CRITICAL 9.8
CVE-2025-27832

An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c.

Fix: 10.05.0+
Fix from $2,300 2025-03-25
Ghostscript HIGH 7.8
CVE-2025-27830

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs during serialization of DollarBlend in a font, for base/write…

Fix: 10.05.0+
Fix from $1,950 2025-03-25
Ghostscript HIGH 7.8
CVE-2025-27833

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs for a long TTF font name to pdf/pdf_fmap.c.

Fix: 10.05.0+
Fix from $1,950 2025-03-25
Ghostscript HIGH 7.8
CVE-2025-27834

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs via an oversized Type 4 function in a PDF document to pdf/pdf…

Fix: 10.05.0+
Fix from $1,950 2025-03-25
Mupdf MEDIUM 5.5
CVE-2024-46657

Artifex Software mupdf v1.24.9 was discovered to contain a segmentation fault via the component /tools/pdfextract.c. This vulnerability allows attack…

Patch available
Fix from $1,600 2024-12-10
Ghostscript HIGH 7.8
CVE-2024-46954

An issue was discovered in decode_utf8 in base/gp_utf8.c in Artifex Ghostscript before 10.04.0. Overlong UTF-8 encoding leads to possible ../ directo…

Fix: 10.04.0+
Fix from $1,950 2024-11-10
Ghostscript HIGH 8.8
CVE-2024-33871

An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, e…

Fix: 10.03.1+
Fix from $1,950 2024-07-03
Ghostscript HIGH 7.5
CVE-2024-29511

Artifex Ghostscript before 10.03.1, when Tesseract is used for OCR, has a directory traversal issue that allows arbitrary file reading (and writing o…

Fix: 10.03.1+
Fix from $1,950 2024-07-03
Ghostscript MEDIUM 6.3
CVE-2024-29510EPSS 28%

Artifex Ghostscript before 10.03.1 allows memory corruption, and SAFER sandbox bypass, via format string injection with a uniprint device.

Fix: 10.03.1+
Fix from $1,600 2024-07-03
Ghostscript MEDIUM 6.3
CVE-2024-33870

An issue was discovered in Artifex Ghostscript before 10.03.1. There is path traversal (via a crafted PostScript document) to arbitrary files if the …

Fix: 10.03.1+
Fix from $1,600 2024-07-03
Ghostscript MEDIUM 5.4
CVE-2024-29507

Artifex Ghostscript before 10.03.0 sometimes has a stack-based buffer overflow via the CIDFSubstPath and CIDFSubstFont parameters.

Fix: 10.03.0+
Fix from $1,600 2024-07-03
Ghostscript MEDIUM 5.3
CVE-2024-33869

An issue was discovered in Artifex Ghostscript before 10.03.1. Path traversal and command execution can occur (via a crafted PostScript document) bec…

Fix: 10.03.1+
Fix from $1,600 2024-07-03
Ghostscript HIGH 8.8
CVE-2024-29506

Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name.

Fix: 10.03.0+
Fix from $1,950 2024-07-03
Ghostscript HIGH 8.8
CVE-2024-29509

Artifex Ghostscript before 10.03.0 has a heap-based overflow when PDFPassword (e.g., for runpdf) has a \000 byte in the middle.

Fix: 10.03.0+
Fix from $1,950 2024-07-03
Ghostscript MEDIUM 5.5
CVE-2023-52722

An issue was discovered in Artifex Ghostscript before 10.03.1. psi/zmisc1.c, when SAFER mode is used, allows eexec seeds other than the Type 1 standa…

Fix: 10.03.1+
Fix from $1,600 2024-04-28
Mupdf HIGH 7.5
CVE-2024-24258

freeglut 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddSubMenu function.

Patch available
Fix from $1,950 2024-02-05
Mupdf HIGH 7.5
CVE-2024-24259

freeglut through 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddMenuEntry function.

Patch available
Fix from $1,950 2024-02-05
Ghostscript CRITICAL 9.8
CVE-2020-36773

Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-after-free in devices/vector/gdevtxtw.c (for txtwrite) because a single characte…

Patch available
Fix from $2,300 2024-02-04