Stellarium is a desktop planetarium application with a focused vulnerability footprint concentrated in its single core product. The durable signal centers on path-traversal weaknesses affecting the application's file-handling logic. Current severity, exploitation, and CVE counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Stellarium over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-28371CRITICAL In Stellarium through 1.2, attackers can write to files that are typically unintended, such as ones with absolute pathnames or .. directory traversal. | Mar 15, 2023 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Stellarium.
Media articles that mention a CVE ID that affects a product developed by Stellarium — matched by CVE ID, not by vendor name.