ComponentOne develops a focused line of UI control libraries and grid components, including FlexGrid, SizerOne, and VSFlexGrid, that serve as foundational building blocks in data-visualization and spreadsheet-like applications. The recurring signal across its disclosures centers on memory-buffer handling weaknesses, reflecting the native-code performance demands of these graphical components.
The number and severity of CVEs published that impact products developed by Componentone over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-0227HIGH Buffer overflow in the VSFlex7.VSFlexGrid ActiveX control in ComponentOne FlexGrid 7.1, as used in Open Automation Software OPC Systems.NET, allows remote attackers to cause a deni | Oct 12, 2012 | 9.3 | 29 | NO | NO |
CVE-2007-6028MEDIUM Multiple stack-based buffer overflows in the VSFlexGrid.VSFlexGridL ActiveX control in ComponentOne FlexGrid 7.1 Light allow remote attackers to cause a denial of service and possi | Nov 20, 2007 | 6.8 | 27 | NO | YES |
CVE-2008-4827HIGH Multiple heap-based buffer overflows in the AddTab method in the (1) Tab and (2) CTab ActiveX controls in c1sizer.ocx and the (3) TabOne ActiveX control in sizerone.ocx in Componen | Jan 8, 2009 | 9.3 | 25 | NO | NO |
CVE-2008-4132HIGH Stack-based buffer overflow in the VSFlexGrid.VSFlexGridL ActiveX control in ComponentOne VSFlexGrid 7.0.1.151 and 8.0.20072.239 allows remote attackers to execute arbitrary code v | Sep 19, 2008 | 9.3 | 24 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Componentone.
Media articles that mention a CVE ID that affects a product developed by Componentone — matched by CVE ID, not by vendor name.