Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

strukturag — Vulnerabilities & Security Advisories 43

Browse all 43 CVE security advisories affecting strukturag. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Strukturag develops enterprise software solutions for document management and workflow automation, primarily serving government and financial sectors. Historically, their products have been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and access control flaws. Six CVEs have been recorded, with several allowing attackers to execute arbitrary code or bypass authentication. While no major public security incidents have been documented, the consistent pattern of vulnerabilities in core functionality suggests ongoing challenges in secure coding practices, particularly in handling user inputs and implementing proper session management.

CVE ID Title CVSS Severity Published
CVE-2026-41069 libheif allows Out-of-bounds vector access leading to invalid dereference (DoS) — libheif CWE-125 6.5 Medium 2026-05-22
CVE-2026-32882 libheif: Heap Buffer OOB Read in overlay compositing due to wrong alpha stride — libheif CWE-125 7.1 High 2026-05-19
CVE-2026-32741 libheif has a heap buffer overflow in decode_mask_image() — libheif CWE-122 7.1 High 2026-05-19
CVE-2026-32814 libheif: Uninitialized Heap Memory Information Leak via Failed Grid Tiles — libheif CWE-200 6.5 Medium 2026-05-19
CVE-2026-32740 libheif: Heap-Buffer-Overflow Write in Grid Tile Chroma Compositing — libheif CWE-787 8.8 High 2026-05-19
CVE-2026-32739 libheif is Vulnerable to Infinite Loop DoS via stts Sample Duration Lookup — libheif CWE-835 6.5 Medium 2026-05-19
CVE-2026-32738 libheif has a Heap OOB Read/SEGV Crash via Zero samples_per_chunk — libheif CWE-125 6.5 Medium 2026-05-19
CVE-2026-33164 NULL Pointer Dereference in libde265 — libde265 CWE-122 7.5 - 2026-03-20
CVE-2026-33165 heap out-of-bounds write in libde265 1.0.16 — libde265 CWE-787 5.5 Medium 2026-03-20
CVE-2026-3950 strukturag libheif stsz/stts track.cc load out-of-bounds — libheif CWE-125 3.3 Low 2026-03-11
CVE-2026-3949 strukturag libheif HEIF File decoder_vvdec.cc vvdec_push_data2 out-of-bounds — libheif CWE-125 3.3 Low 2026-03-11
CVE-2025-68431 libheif has Potential Heap Buffer Over-Read — libheif CWE-125 6.5 Medium 2025-12-29
CVE-2022-1253 Heap-based Buffer Overflow in strukturag/libde265 — strukturag/libde265 CWE-122 9.8 - 2022-04-06

This page lists every published CVE security advisory associated with strukturag. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.