Libexcel Project maintains a specialized library for spreadsheet-file processing, with its identified vulnerability exposure centered on the core libexcel product and dominated by memory-buffer handling weaknesses. Current exploitation activity and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Libexcel Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-20213HIGH wbook_addworksheet in workbook.c in libexcel.a in libexcel 0.01 allows attackers to cause a denial of service (SEGV) via a long name. NOTE: this is not a Microsoft product. | Dec 18, 2018 | 7.5 | 24 | NO | NO |
CVE-2018-20304MEDIUM wbook_addworksheet in workbook.c in libexcel.a in libexcel 0.01 allows attackers to cause a denial of service (SEGV) via a long second argument. NOTE: this is not a Microsoft produ | Dec 20, 2018 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Libexcel Project.
Media articles that mention a CVE ID that affects a product developed by Libexcel Project — matched by CVE ID, not by vendor name.