Libreoffice
This hub aggregates every CVE we track for Libreoffice, a product in the consumer software space. Use it to gauge the current risk picture and drill into individual advisories.
91
CVEs tracked
15
Critical
36
High
0
In CISA KEV
Severity distribution
HIGH36MEDIUM26CRITICAL15LOW2
Monthly trend
0
0
0
2
1
2
1
0
0
0
0
0
0
0
1
0
0
0
0
1
7
0
0
7
2024-102026-09
Latest CVEs
The 15 most recently published vulnerabilities affecting Libreoffice.
- CVE-2026-63279Out of bounds read in PICT image import
- CVE-2026-63278Package URLs can be used to exfiltrate arbitrary INI file values and environment variables
- CVE-2026-63276Stack buffer overflow in CFF to Type 1 font conversion
- CVE-2026-63275Stack buffer overflow in CFF font hint handling
- CVE-2026-63274Heap buffer overflow in PDF import stream handling
- CVE-2026-63273Heap buffer overflow in PDF import encryption handling
- CVE-2026-63272Heap buffer overflow in WMF text record import
- CVE-2026-8358Heap buffer overflow in spreadsheet tracked-changes import
- CVE-2026-8357Heap buffer overflow in Calc formula compilation7.8
- CVE-2026-8356Stack buffer overflow in PPT presentation import
- CVE-2026-6047Heap buffer overflow in OOXML text box element import
- CVE-2026-6045Heap buffer overflow in EMF+ gradient brush import
- CVE-2026-6040Heap use-after-free in ODF number-format blank-width parsing7.3
- CVE-2026-6039Heap buffer overflow in DXF polyline import
- CVE-2026-4430Heap Buffer Overflow in AgileEngine7.8
Product normalization is registry-driven with AI assist and human review. How it works