Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.3 CVE-2026-33206 calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to version 9.6.0, a path traversal vulnera… Calibre 9.6.0+ Fix from $1,6002026-03-27 MEDIUM 5.5 CVE-2026-33205 calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to version 9.6.0, a Server-Side Request Fo… Calibre 9.6.0+ Fix from $1,6002026-03-27 HIGH 8.2 CVE-2026-30853 calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to 9.5.0, a path traversal vulnerability i… Calibre 9.5.0+ Fix from $1,9502026-03-13 MEDIUM 6.4 CVE-2026-27810 calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to version 9.4.0, an HTTP Response Header … Calibre 9.4.0+ Fix from $1,6002026-02-27 MEDIUM 5.3 CVE-2026-27824 calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to version 9.4.0, the calibre Content Serv… Calibre 9.4.0+ Fix from $1,6002026-02-27 HIGH 8.8 CVE-2026-26065 calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Versions 9.2.1 and below are vulnerable to Path … Calibre 9.3.0+ Fix from $1,9502026-02-20 HIGH 8.8 CVE-2026-26064 calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Versions 9.2.1 and below contain a Path Traversa… Calibre 9.3.0+ Fix from $1,9502026-02-20 HIGH 7.8 CVE-2026-25731 calibre is an e-book manager. Prior to 9.2.0, a Server-Side Template Injection (SSTI) vulnerability in Calibre's Templite templating engine allows ar… Calibre 9.2.0+ Fix from $1,9502026-02-06 HIGH 8.6 CVE-2026-25635 calibre is an e-book manager. Prior to 9.2.0, Calibre's CHM reader contains a path traversal vulnerability that allows arbitrary file writes anywhere… Calibre 9.2.0+ Fix from $1,9502026-02-06 HIGH 7.8 CVE-2026-25636 calibre is an e-book manager. In 9.1.0 and earlier, a path traversal vulnerability in Calibre's EPUB conversion allows a malicious EPUB file to corru… Calibre 9.2.0+ Fix from $1,9502026-02-06 HIGH 7.1 CVE-2024-7009EPSS 14% Unsanitized user-input in Calibre <= 7.15.0 allow users with permissions to perform full-text searches to achieve SQL injection on the SQLite databas… Calibre after 7.15.0 Fix from $1,9502024-08-06 HIGH 7.5 CVE-2024-6781EPSS 62% Path traversal in Calibre <= 7.14.0 allow unauthenticated attackers to achieve arbitrary file read. Calibre after 7.14.0 Fix from $1,9502024-08-06 MEDIUM 6.1 CVE-2024-7008EPSS 26% Unsanitized user-input in Calibre <= 7.15.0 allow attackers to perform reflected cross-site scripting. Calibre after 7.15.0 Fix from $1,6002024-08-06 HIGH 7.5 CVE-2023-46303 link_to_local_path in ebooks/conversion/plugins/html_input.py in calibre before 6.19.0 can, by default, add resources outside of the document root. Calibre 6.19.0+ Fix from $1,9502023-10-22 HIGH 8.1 CVE-2011-4126 Race condition issues were found in Calibre at devices/linux_mount_helper.c allowing unprivileged users the ability to mount any device to anywhere. Calibre No fix yet Fix from $1,9502021-10-27 CRITICAL 9.8 CVE-2011-4124 Input validation issues were found in Calibre at devices/linux_mount_helper.c which can lead to argument injection and elevation of privileges. Calibre No fix yet Fix from $2,3002021-10-27 CRITICAL 9.8 CVE-2011-4125 A untrusted search path issue was found in Calibre at devices/linux_mount_helper.c leading to the ability of unprivileged users to execute any progra… Calibre No fix yet Fix from $2,3002021-10-27 HIGH 7.8 CVE-2018-7889 gui2/viewer/bookmarkmanager.py in Calibre 3.18 calls cPickle.load on imported bookmark data, which allows remote attackers to execute arbitrary code … Calibre Patch available Fix from $1,9502018-03-08 MEDIUM 5.5 CVE-2016-10187 The E-book viewer in calibre before 2.75 allows remote attackers to read arbitrary files via a crafted epub file with JavaScript. Calibre after 2.74.0 Fix from $1,6002017-03-16