Cadsofttools develops CADImage, a narrowly focused computer-aided design and image-processing application that, despite a limited product scope, has accumulated a substantial vulnerability footprint. The vendor's disclosures center persistently on memory-safety issues—improper buffer restrictions, out-of-bounds reads, and out-of-bounds writes—reflecting the low-level graphics and file-parsing operations inherent to design software. These weakness classes are structural to the attack surface rather than indicative of a particular severity or exploitation pattern; defenders should prioritize keeping design workstations and batch-processing systems current, especially where CADImage processes untrusted file inputs. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cadsofttools over time
Signals from CVEs in this vendor scope (91 CVEs).
91 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-7258HIGH IrfanView CADImage Plugin DWG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected | Jul 21, 2025 | 7.8 | 26 | NO | NO |
CVE-2025-7325HIGH IrfanView CADImage Plugin DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected i | Jul 21, 2025 | 7.8 | 22 | NO | NO |
CVE-2025-7324HIGH IrfanView CADImage Plugin DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected | Jul 21, 2025 | 7.8 | 22 | NO | NO |
CVE-2025-7322HIGH IrfanView CADImage Plugin DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected | Jul 21, 2025 | 7.8 | 22 | NO | NO |
CVE-2025-7318HIGH IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected i | Jul 21, 2025 | 7.8 | 22 | NO | NO |
CVE-2025-7316HIGH IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected i | Jul 21, 2025 | 7.8 | 22 | NO | NO |
CVE-2025-7315HIGH IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected i | Jul 21, 2025 | 7.8 | 22 | NO | NO |
CVE-2025-7313HIGH IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected i | Jul 21, 2025 | 7.8 | 22 | NO | NO |
CVE-2025-7312HIGH IrfanView CADImage Plugin DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected | Jul 21, 2025 | 7.8 | 22 | NO | NO |
CVE-2025-7311HIGH IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected i | Jul 21, 2025 | 7.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (91 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cadsofttools.
Media articles that mention a CVE ID that affects a product developed by Cadsofttools — matched by CVE ID, not by vendor name.