The Document Foundation
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 51 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from May 15, 2012 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Environment/ini-file leaks
LFI and GET SSRF via GStreamer and HLS playlists
LFI via calcext:data-mappings, sql provider and sdbc:flat:file:// db href
LFI and GET SSRF via calcext:data-mappings and csv provider
Arbitrary file write via calcext:data-mappings, sql provider and Firebird backup functionality
Out of bounds read in PICT image import
Package URLs can be used to exfiltrate arbitrary INI file values and environment variables
Stack buffer overflow in CFF to Type 1 font conversion
Stack buffer overflow in CFF font hint handling
Heap buffer overflow in PDF import encryption handling
Monitor The Document Foundation in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.