Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

libreoffice — Vulnerabilities & Security Advisories 52

All 52 CVE vulnerabilities found in libreoffice, with AI-generated Chinese analysis, references, and POCs.

This page aggregates known security vulnerabilities for the LibreOffice desktop suite, categorized by specific weakness types. It collects data covering memory corruption, input validation flaws, and privilege escalation issues, spanning advisories from 2006 through the present. Readers can use this section to track the vendor’s security advisories, analyze the prevalence of particular weakness classes, or review the complete vulnerability history associated with the LibreOffice product line. The dataset highlights recurring patterns in code execution risks and denial-of-service conditions found across various release cycles.

Vendor: [UNKNOWN]

CVE ID Title CVSS Severity Published
CVE-2023-2255 Remote documents loaded without prompt via IFrame CWE-264 5.3 - 2023-05-25
CVE-2022-3140 Macro URL arbitrary script execution CWE-20 7.6 - 2022-10-11
CVE-2022-26307 Weak Master Keys CWE-326 8.8 - 2022-07-25
CVE-2022-26306 Execution of Untrusted Macros Due to Improper Certificate Validation CWE-326 9.1 - 2022-07-25
CVE-2022-26305 Execution of Untrusted Macros Due to Improper Certificate Validation CWE-295 7.5 - 2022-07-25
CVE-2021-25636 Incorrect trust validation of signature with ambiguous KeyInfo children CWE-347 7.5 - 2022-02-22
CVE-2021-25634 Timestamp Manipulation with Signature Wrapping CWE-295 7.5 - 2021-10-12
CVE-2021-25633 Content Manipulation with Double Certificate Attack CWE-295 7.5 - 2021-10-11
CVE-2021-25631 denylist of executable filename extensions possible to bypass under windows CWE-184 8.8 - 2021-05-03
CVE-2020-12803 XForms submissions could overwrite local files 6.5 - 2020-06-08
CVE-2020-12802 remote graphics contained in docx format retrieved in 'stealth mode' CWE-200 5.3 - 2020-06-08
CVE-2020-12801 Crash-recovered MSOffice encrypted documents defaulted to not to using encryption on next save CWE-311 8.2 - 2020-05-18
CVE-2019-9853 Insufficient URL decoding flaw in categorizing macro location CWE-116 7.8 - 2019-09-27
CVE-2019-9855 Windows 8.3 path equivalence handling flaw allows LibreLogo script execution 9.8 - 2019-09-06
CVE-2019-9854 Unsafe URL assembly flaw in allowed script location check 7.8 - 2019-09-06
CVE-2019-9852 Insufficient URL encoding flaw in allowed script location check CWE-116 7.8 - 2019-08-15
CVE-2019-9851 LibreLogo global-event script execution 9.8 - 2019-08-15
CVE-2019-9850 Insufficient url validation allowing LibreLogo script execution 9.8 - 2019-08-15
CVE-2019-9849 LibreOffice 信息泄露漏洞 4.3 - 2019-07-17
CVE-2019-9848 LibreOffice 代码注入漏洞 9.8 - 2019-07-17
CVE-2019-9847 Executable hyperlink targets executed unconditionally on activation 7.8 - 2019-05-09
CVE-2018-16858 LibreOffice 路径遍历漏洞 CWE-356 9.8 - 2019-03-25

All 52 known CVE vulnerabilities affecting libreoffice with full Chinese analysis, references, and POCs where available.