Quark develops productivity and cloud-storage applications, with observed vulnerabilities clustering around memory-safety issues such as improper buffer-boundary restrictions and object-hijacking risks in Java implementations. Live severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Quark over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-63685CRITICAL Quark Cloud Drive v3.23.2 has a DLL Hijacking vulnerability. This vulnerability stems from the insecure loading of system libraries. Specifically, the application does not validate | Nov 20, 2025 | 9.8 | 31 | NO | NO |
CVE-2007-3678HIGH Stack-based buffer overflow in the MSWord text-import extension (Word 6-2000 Filter.xnt) in QuarkXPress 7.2 for Windows, when using the Rectangle Text Box tool for importing text, | Jul 11, 2007 | 7.6 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Quark.
Media articles that mention a CVE ID that affects a product developed by Quark — matched by CVE ID, not by vendor name.