Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Freerdp

First CVE: Jan 3, 2014Active for: 13 yearsTotal CVEs: 180
48.5
VTI Score
High

FreeRDP is a widely deployed open-source Remote Desktop Protocol client and library embedded across numerous third-party applications, virtualization platforms, and enterprise remote-access solutions, making its security posture relevant far beyond its direct user base. The vendor's vulnerabilities skew strongly toward critical-severity outcomes and concentrate in memory-safety weakness classes—out-of-bounds reads and writes, use-after-free conditions, heap-based buffer overflows, and integer overflows—that are typical of C-based protocol parsers handling untrusted network input. These flaws recur across the RDP parsing and rendering pipeline and carry particular risk because they affect systems handling authentication and screen-sharing traffic in environments where remote access is a routine operational dependency. Defenders should treat FreeRDP updates as high-priority, especially for internet-reachable systems and virtualization hosts, and inventory downstream products that bundle the library. Live exploitation activity and severity counts are shown alongside this summary.

FAUCET AI Generated
180
Total CVEs
More Total CVEs than 100% of tracked vendors
16.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 100% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 71% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Freerdp over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 3, 2014
12 years ago
Most Recent CVE
Jul 20, 2026
4 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (180 CVEs).

180 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-64620CRITICAL
FreeRDP before 3.28.0 (affected <=3.27.1) contains a heap-based buffer overflow in crypto_rsa_common() (libfreerdp/crypto/crypto.c). The function writes the modular-exponentiation
Jul 20, 20269.843NONO
CVE-2026-57156CRITICAL
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0 on 32-bit builds, FreeRDP clients contain an integer overflow in update_read_delta_points in libfre
Jul 10, 20269.841NONO
CVE-2026-45700CRITICAL
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, FreeRDP's planar bitmap decoder has an out-of-bounds heap write when decoding RLE planar data. In
May 29, 20269.839NONO
CVE-2026-44420HIGH
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, a malicious RDP client can trigger a heap-buffer-overflow write in FreeRDP's server-side clipboard
May 29, 20268.838NONO
CVE-2026-44421HIGH
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, a malicious RDP server can trigger a heap-buffer-overflow write in the FreeRDP client by sending c
May 29, 20268.837NONO
CVE-2026-40033HIGH
FreeRDP before 3.26.0 contains a heap-buffer-overflow vulnerability in gdi_CacheToSurface that allows remote attackers to write out-of-bounds heap memory. The vulnerability occurs
May 26, 20268.837NONO
CVE-2026-23533CRITICAL
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, a client-side heap buffer overflow occurs in the RDPGFX ClearCodec decode path when malici
Jan 19, 20269.837NONO
CVE-2026-57158CRITICAL
FreeRDP is a free implementation of the Remote Desktop Protocol. From 3.21.0 before 3.28.0, FreeRDP clients using the GFX pipeline contain an incomplete fix for CVE-2026-23530 in p
Jul 10, 20269.136NONO
CVE-2026-55827HIGH
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.1, FreeRDP clients launched with the non-default /cache:codec:rfx option pass desktop stride and heig
Jul 10, 20268.836NONO
CVE-2026-56297HIGH
FreeRDP before 3.22.0 contains a use-after-free vulnerability in dvcman_channel_close and dvcman_call_on_receive due to improper synchronization of channel_callback access. A malic
Jul 8, 20268.136NONO
View all 180 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products180 CVEs
26%
33%
33%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local4 (2.2%)
Network174 (96.7%)
Unknown2 (1.1%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low153 (85.0%)
High25 (13.9%)
Unknown2 (1.1%)
User Interaction
None145 (80.6%)
Unknown2 (1.1%)
Required33 (18.3%)
Privileges Required
Low26 (14.4%)
High16 (8.9%)
None136 (75.6%)
Unknown2 (1.1%)

Exploit Exposure

Signals from CVEs in this vendor scope (180 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Freerdp.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Freerdp — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Freerdp's Products

View all 6 CNAs →

Top CWEs