Calibre
This hub aggregates every CVE we track for Calibre, a product in the consumer software space. Use it to gauge the current risk picture and drill into individual advisories.
22
CVEs tracked
3
Critical
11
High
0
In CISA KEV
Severity distribution
HIGH11MEDIUM8CRITICAL3
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
7
3
0
0
0
0
1
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Calibre.
- CVE-2026-73249calibre Content Server `/book-update-annotations` Missing Write Authorization Check Allows Unauthorized Annotation Modification7.5
- CVE-2026-33206calibre has a path traversal vulnerability6.3
- CVE-2026-33205calibre has Server-Side Request Forgery in ebook viewer backend5.5
- CVE-2026-30853calibre has a Path Traversal Leading to Arbitrary File Write5.0
- CVE-2026-27824calibre has IP Ban Bypass via X-Forwarded-For Header Spoofing5.3
- CVE-2026-27810calibre Vulnerable to HTTP Response Header Injection6.4
- CVE-2026-26065calibre: Path Traversal can Lead to Arbitrary File Write and Potential Code Execution8.8
- CVE-2026-26064calibre: Path Traversal Vulnerability Enables Arbitrary File Write and Remote Code Execution8.8
- CVE-2026-25731Calibre Affected by Arbitrary Code Execution via Server-Side Template Injection in Calibre HTML Export7.8
- CVE-2026-25635calibre has a Path Traversal Leading to Arbitrary File Write and Potential Code Execution8.6
- CVE-2026-25636calibre has a Path Traversal Leading to Arbitrary File Corruption and Code Execution8.2
- CVE-2024-7009Calibre SQL Injection4.2
- CVE-2024-7008Calibre Reflected Cross-Site Scripting (XSS)5.4
- CVE-2024-6782Calibre Remote Code Execution9.8
- CVE-2024-6781Calibre Arbitrary File Read7.5
Product normalization is registry-driven with AI assist and human review. How it works