Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Artifex

First CVE: May 12, 2010Active for: 16 yearsTotal CVEs: 258
60.3
VTI Score
TOP TARGET

Artifex Software maintains a narrowly focused portfolio centered on document-processing and rendering tools such as Ghostscript and MuPDF that are deeply embedded across a broad range of server, printing, and content-management infrastructure despite limited product count. The vendor's vulnerability footprint is disproportionately large within the landscape, reflecting the complexity of parsing untrusted document formats and the memory-safety demands of C-based codebases; a meaningful share of disclosures reach serious severity, and vulnerabilities in this space have an established tendency to acquire public exploit code. The exposure recurs consistently across weakness classes including out-of-bounds writes, buffer overflows, use-after-free conditions, and out-of-bounds reads, reflecting the inherent challenges of safe memory management in document parsing engines that process diverse and potentially malicious input. Defenders should treat Artifex advisories as broadly applicable given the ubiquity of Ghostscript in legacy printing and document-processing pipelines, and should prioritize patching where these tools remain internet-exposed or process untrusted documents. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
258
Total CVEs
More Total CVEs than 100% of tracked vendors
1.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
7.0
Avg CVSS Score
Higher Avg CVSS Score than 50% of tracked vendors
0.4%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Artifex over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 12, 2010
16 years ago
Most Recent CVE
Jun 23, 2026
32 days ago

Products(10 total)

Top CVEs

Signals from CVEs in this vendor scope (258 CVEs).

258 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2017-8291HIGH
Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile (%pipe%" substring in a crafted .eps doc
Apr 27, 20177.898YESYES
CVE-2018-16509HIGH
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers ab
Sep 5, 20187.888NOYES
CVE-2021-3781CRITICAL
A trivial sandbox (enabled with the `-dSAFER` option) escape flaw was found in the ghostscript interpreter by injecting a specially crafted pipe command. This flaw allows a special
Feb 16, 20229.977NONO
CVE-2019-6116HIGH
In Artifex Ghostscript through 9.26, ephemeral or transient procedures can allow access to system operators, leading to remote code execution.
Mar 21, 20197.859NOYES
CVE-2016-7976HIGH
The PS Interpreter in Ghostscript 9.18 and 9.20 allows remote attackers to execute arbitrary code via crafted userparams.
Aug 7, 20178.852NOYES
CVE-2024-29510MEDIUM
Artifex Ghostscript before 10.03.1 allows memory corruption, and SAFER sandbox bypass, via format string injection with a uniprint device.
Jul 3, 20246.351NOYES
CVE-2021-3407MEDIUM
A flaw was found in mupdf 1.18.0. Double free of object during linearization may lead to memory corruption and other potential consequences.
Feb 23, 20215.545NONO
CVE-2010-1869HIGH
Stack-based buffer overflow in the parser function in GhostScript 8.70 and 8.64 allows context-dependent attackers to execute arbitrary code via a crafted PostScript file.
May 12, 20109.345NOYES
CVE-2018-17961HIGH
Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving errorhandler setup. NOTE: this issue exists because of an incom
Oct 15, 20188.643NOYES
CVE-2014-2013HIGH
Stack-based buffer overflow in the xps_parse_color function in xps/xps-common.c in MuPDF 1.3 and earlier allows remote attackers to execute arbitrary code via a large number of ent
Mar 3, 20147.543NOYES
View all 258 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products258 CVEs
40%
50%
9%
Severity distribution among all CVEs352,708 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local184 (71.3%)
Network62 (24.0%)
Unknown11 (4.3%)
Physical0 (0.0%)
Adjacent Network1 (0.4%)
Attack Complexity
Low246 (95.3%)
High1 (0.4%)
Unknown11 (4.3%)
User Interaction
None60 (23.3%)
Unknown11 (4.3%)
Required187 (72.5%)
Privileges Required
Low9 (3.5%)
High0 (0.0%)
None238 (92.2%)
Unknown11 (4.3%)

Exploit Exposure

Signals from CVEs in this vendor scope (258 CVEs).

CISA KEV
1 CVE
0.4% of CVEs· 99th percentile
Metasploit
4 CVEs
1.6% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
11 CVEs
4.3% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Artifex.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Artifex — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Artifex's Products

View all 8 CNAs →

Top CWEs