Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Openbabel

First CVE: Jul 21, 2023Active for: 3 yearsTotal CVEs: 24
48.9
VTI Score
High

Open Babel is a widely embedded chemistry and molecular-modeling library that converts between chemical file formats and provides computational chemistry functionality across research software, bioinformatics platforms, and drug-discovery workflows. Despite a narrow product portfolio, the library's deep integration into scientific computing environments and its role in processing untrusted chemical data files creates a meaningful attack surface. Vulnerabilities affecting the library cluster around memory-safety issues—including buffer overflows, out-of-bounds writes, heap-based corruption, and NULL-pointer dereferences—that arise from the parsing and manipulation of complex chemical file structures and lack of formal bounds checking. These weakness classes reflect the C/C++ implementation heritage and the challenge of safely handling variable-length and format-diverse input. Defenders working in research and drug-discovery environments should track Open Babel releases and treat file-processing pipelines that accept external chemical data as requiring input validation and sandboxing; current severity, exploitation, and exposure details are shown alongside this summary.

FAUCET AI Generated
24
Total CVEs
More Total CVEs than 97% of tracked vendors
8.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 99% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 57% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Openbabel over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 21, 2023
3 years ago
Most Recent CVE
Mar 2, 2026
145 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (24 CVEs).

24 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-2705HIGH
A vulnerability was detected in Open Babel up to 3.1.1. The impacted element is the function OBAtom::SetFormalCharge in the library include/openbabel/atom.h of the component MOL2 F
Feb 19, 20268.127NONO
CVE-2026-2704HIGH
A security vulnerability has been detected in Open Babel up to 3.1.1. The affected element is the function OpenBabel::transform3d::DescribeAsString of the file src/math/transform3d
Feb 19, 20268.127NONO
CVE-2025-10997HIGH
A flaw has been found in Open Babel up to 3.1.1. Impacted is the function ChemKinFormat::CheckSpecies of the file /src/formats/chemkinformat.cpp. Executing manipulation can lead to
Sep 26, 20257.827NONO
CVE-2025-10996HIGH
A vulnerability was detected in Open Babel up to 3.1.1. This issue affects the function OBSmilesParser::ParseSmiles of the file /src/formats/smilesformat.cpp. Performing manipulati
Sep 26, 20257.827NONO
CVE-2025-10995HIGH
A security vulnerability has been detected in Open Babel up to 3.1.1. This vulnerability affects the function zlib_stream::basic_unzip_streambuf::underflow in the library /src/zips
Sep 26, 20257.826NONO
CVE-2025-10994HIGH
A weakness has been identified in Open Babel up to 3.1.1. This affects the function GAMESSOutputFormat::ReadMolecule of the file gamessformat.cpp. This manipulation causes use afte
Sep 26, 20257.826NONO
CVE-2022-44451HIGH
A use of uninitialized pointer vulnerability exists in the MSI format atom functionality of Open Babel 3.1.1 and master commit 530dbfa3. A specially crafted malformed file can lead
Jul 21, 20237.826NONO
CVE-2022-42885HIGH
A use of uninitialized pointer vulnerability exists in the GRO format res functionality of Open Babel 3.1.1 and master commit 530dbfa3. A specially crafted malformed file can lead
Jul 21, 20237.826NONO
CVE-2022-41793HIGH
An out-of-bounds write vulnerability exists in the CSR format title functionality of Open Babel 3.1.1 and master commit 530dbfa3. A specially crafted malformed file can lead to arb
Jul 21, 20237.826NONO
CVE-2022-46291HIGH
Multiple out-of-bounds write vulnerabilities exist in the translationVectors parsing functionality in multiple supported formats of Open Babel 3.1.1 and master commit 530dbfa3. A s
Jul 21, 20237.825NONO
View all 24 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products24 CVEs
17%
83%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local21 (87.5%)
Network3 (12.5%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low24 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None7 (29.2%)
Unknown0 (0.0%)
Required17 (70.8%)
Privileges Required
Low7 (29.2%)
High0 (0.0%)
None17 (70.8%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (24 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Openbabel.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Openbabel — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Openbabel's Products

View all 2 CNAs →

Top CWEs