Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

FreeRDP — Vulnerabilities & Security Advisories 211

Browse all 211 CVE security advisories affecting FreeRDP. AI-powered Chinese analysis, POCs, and references for each vulnerability.

FreeRDP is an open-source Remote Desktop Protocol client and server implementation designed to facilitate cross-platform remote desktop connectivity. Its widespread adoption in enterprise and personal environments has made it a frequent target for security researchers, resulting in a significant number of recorded Common Vulnerabilities and Exposures. Historically, the codebase has been susceptible to critical remote code execution flaws, often stemming from improper input validation within the RDP protocol parsing logic. These vulnerabilities frequently allow attackers to execute arbitrary commands or escalate privileges on affected systems without user interaction. While the project maintains an active development cycle to patch these issues, the sheer volume of past incidents highlights the complexity of implementing secure network protocols. Continuous monitoring and timely updates remain essential for mitigating risks associated with its extensive feature set and legacy code dependencies.

Found 211 results / 211 Clear Filters
Top products by FreeRDP: FreeRDP
CVE ID Title CVSS Severity Published
CVE-2026-26965 FreeRDP has Out-of-bounds Write — FreeRDP CWE-787 8.8 High 2026-02-25
CVE-2026-26955 FreeRDP has Out-of-bounds Write — FreeRDP CWE-787 8.8 High 2026-02-25
CVE-2026-27015 FreeRDP: Smartcard NDR Alignment Padding Triggers Reachable WINPR_ASSERT Abort (Client DoS) — FreeRDP CWE-617 7.5AI High AI 2026-02-25
CVE-2026-26271 Buffer Overread in FreeRDP Icon Processing — FreeRDP CWE-126 6.8AI Medium AI 2026-02-25
CVE-2026-25997 FreeRDP has heap-use-after-free in xf_clipboard_format_equal — FreeRDP CWE-416 9.8AI Critical AI 2026-02-25
CVE-2026-25959 FreeRDP has heap-use-after-free in xf_cliprdr_provide_data_ — FreeRDP CWE-416 9.1AI Critical AI 2026-02-25
CVE-2026-25955 FreeRDP has heap-use-after-free in xf_AppUpdateWindowFromSurface (stale XImage) — FreeRDP CWE-416 9.8AI Critical AI 2026-02-25
CVE-2026-25954 FreeRDP has heap-use-after-free in xf_rail_server_local_move_size — FreeRDP CWE-416 9.1AI Critical AI 2026-02-25
CVE-2026-25953 FreeRDP has heap-use-after-free in xf_AppUpdateWindowFromSurface (freed appWindow) — FreeRDP CWE-416 9.1AI Critical AI 2026-02-25
CVE-2026-25952 FreeRDP has heap-use-after-free in xf_SetWindowMinMaxInfo — FreeRDP CWE-416 9.1AI Critical AI 2026-02-25
CVE-2026-25942 FreeRDP has global-buffer-overflow in xf_rail_server_execute_result — FreeRDP CWE-125 8.2AI High AI 2026-02-25
CVE-2026-25941 FreeRDP: vuln_1_15_1 RDPGFX WIRE_TO_SURFACE_2 Out-of-Bounds Read — FreeRDP CWE-20 4.3 Medium 2026-02-25
CVE-2026-24684 FreeRDP has a Heap-use-after-free in play_thread — FreeRDP CWE-416 9.8AI Critical AI 2026-02-09
CVE-2026-24683 FreeRDP has a heap-use-after-free in ainput_send_input_event — FreeRDP CWE-416 9.8AI Critical AI 2026-02-09
CVE-2026-24682 FreeRDP has a Heap-buffer-overflow in audio_formats_free — FreeRDP CWE-122 9.1AI Critical AI 2026-02-09
CVE-2026-24681 FreeRDP has a heap-use-after-free in urb_bulk_transfer_cb — FreeRDP CWE-416 8.8AI High AI 2026-02-09
CVE-2026-24680 FreeRDP has a heap-use-after-free in update_pointer_new(SDL) — FreeRDP CWE-416 9.1AI Critical AI 2026-02-09
CVE-2026-24679 FreeRDP has a heap-buffer-overflow in urb_select_interface — FreeRDP CWE-122 9.1AI Critical AI 2026-02-09
CVE-2026-24678 FreeRDP has a Heap-use-after-free in cam_v4l_stream_capture_thread — FreeRDP CWE-416 8.8 - 2026-02-09
CVE-2026-24677 FreeRDP has a heap-buffer-overflow in ecam_encoder_compress_h264 — FreeRDP CWE-416 9.1AI Critical AI 2026-02-09
CVE-2026-24676 FreeRDP has a heap-use-after-free in audio_format_compatible — FreeRDP CWE-416 9.8AI Critical AI 2026-02-09
CVE-2026-24675 FreeRDP has a Heap-use-after-free in urb_select_interface — FreeRDP CWE-416 9.8AI Critical AI 2026-02-09
CVE-2026-24491 FreeRDP has a heap-use-after-free in video_timer — FreeRDP CWE-416 8.3AI High AI 2026-02-09
CVE-2026-23948 FreeRDP has a NULL Pointer Dereference in rdp_write_logon_info_v2() — FreeRDP CWE-476 7.5AI High AI 2026-02-09
CVE-2026-23884 Heap-use-after-free in gdi_set_bounds — FreeRDP CWE-416 9.8 - 2026-01-19
CVE-2026-23883 Heap-use-after-free in update_pointer_new — FreeRDP CWE-416 9.8 - 2026-01-19
CVE-2026-23732 FreeRDP has heap-buffer-overflow in Glyph_Alloc — FreeRDP CWE-122 7.5 - 2026-01-19
CVE-2026-23534 FreeRDP has heap-buffer-overflow in clear_decompress_bands_data — FreeRDP CWE-122 9.8 - 2026-01-19
CVE-2026-23533 FreeRDP has heap-buffer-overflow in clear_decompress_residual_data — FreeRDP CWE-122 9.8 - 2026-01-19
CVE-2026-23532 FreeRDP has heap-buffer-overflow in gdi_SurfaceToSurface — FreeRDP CWE-122 9.8 - 2026-01-19

This page lists every published CVE security advisory associated with FreeRDP. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.