Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

X.Org

First CVE: Jul 1, 1997Active for: 29 yearsTotal CVEs: 169
47.1
VTI Score
High

X.Org maintains the widely deployed X11 windowing system and related graphics infrastructure that sits at the foundation of Unix and Linux desktop environments, presenting a legacy codebase with substantial installed deployment reach. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, and the exposure concentrates in core components including the X Server, XWayland, and the X11 client libraries. The recurring weakness classes—buffer boundary violations, out-of-bounds writes, use-after-free conditions, and input-validation flaws—reflect the memory-safety challenges inherent to aging native graphics code that handles untrusted display protocol data and font rendering. Defenders should prioritize X11-related updates in desktop and server environments where graphical access is exposed, particularly for systems running legacy or unpatched distributions; current severity and exploitation activity are shown alongside this summary.

FAUCET AI Generated
169
Total CVEs
More Total CVEs than 100% of tracked vendors
0.2
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 2% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 57% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by X.Org over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 1, 1997
29 years ago
Most Recent CVE
Jul 8, 2026
16 days ago

Products(31 total)

Top CVEs

Signals from CVEs in this vendor scope (169 CVEs).

169 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2018-14665MEDIUM
A flaw was found in xorg-x11-server before 1.20.3. An incorrect permission check for -modulepath and -logfile options when starting Xorg. X server allows unprivileged users with th
Oct 25, 20186.657NOYES
CVE-1999-0526HIGH
An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server.
Jul 1, 199710.054NOYES
CVE-2026-56000HIGH
Local attackers with a X connection able to provide GLX commit to the X server xorg-server before 21.2.24 and xwayland before 24.1.13 could cause a Heap Use After Free, due to Comm
Jul 8, 20267.837NONO
CVE-2026-55999HIGH
Local attackers with a X connection able to provide PCX fonts to the X server xorg-server before 21.2.24 and xwayland before 24.1.13 could cause a heap buffer overflow via SetFon
Jul 8, 20267.836NONO
CVE-2026-50261HIGH
A use-after-free flaw was found in the X.Org X server and Xwayland in SyncChangeCounter(). A client that sets up multiple SyncCounters can trigger a use-after-free when destroying
Jun 5, 20267.836NONO
CVE-2026-50260HIGH
A use-after-free flaw was found in the X.Org X server and Xwayland in FreeCounter(). A client that sets up multiple SyncCounters and awaits on those triggers can trigger a use-afte
Jun 5, 20267.836NONO
CVE-2026-50258HIGH
A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. The X server has multiple stack buffers sized XkbMaxShiftLevel * XkbNumKbdGroups but CheckKeyTypes(
Jun 5, 20267.836NONO
CVE-2026-50256HIGH
A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. A mismatch between the X server and the libXfont2 library's maximum font name length can cause a st
Jun 5, 20267.836NONO
CVE-2021-31535CRITICAL
LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side col
May 27, 20219.836NONO
CVE-2019-17624HIGH
"" In X.Org X Server 1.20.4, there is a stack-based buffer overflow in the function XQueryKeymap. For example, by sending ct.c_char 1000 times, an attacker can cause a denial of se
Oct 16, 20197.836NOYES
View all 169 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products169 CVEs
27%
52%
17%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local59 (34.9%)
Network49 (29.0%)
Unknown60 (35.5%)
Physical1 (0.6%)
Adjacent Network0 (0.0%)
Attack Complexity
Low103 (60.9%)
High6 (3.6%)
Unknown60 (35.5%)
User Interaction
None109 (64.5%)
Unknown60 (35.5%)
Required0 (0.0%)
Privileges Required
Low71 (42.0%)
High1 (0.6%)
None37 (21.9%)
Unknown60 (35.5%)

Exploit Exposure

Signals from CVEs in this vendor scope (169 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
2 CVEs
1.2% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
7 CVEs
4.1% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by X.Org.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by X.Org — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For X.Org's Products

View all 6 CNAs →

Top CWEs