Libxls Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 20
    Known Exploited: 0
    0
    Critical Level Threats
    9
    High Level Threats
    11
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-26825

    Use‑of‑Uninitialized Memory in libxls 1.6.3 During XLS Parsing

    Last Modified: Jun 08, 2026
    Published: Jun 03, 2026

    CVE-2026-26824

    libxls through version 1.6.3 contains a use of uninitialized memory vulnerability in the OLE container parser. Memory allocated for the Master Sector Allocation Table (MSAT) in read_MSAT() is not fully initialized before being consumed by ole2_validate_sector_chain(), which may result in application crashes or potential information disclosure when processing a crafted XLS file

    Last Modified: Jun 05, 2026
    Published: Jun 03, 2026

    CVE-2023-38856

    libxls: heap buffer overflow in xls_parseWorkBook() in xls.c

    Last Modified: Nov 21, 2024
    Published: Aug 15, 2023

    CVE-2023-38854

    libxls: heap buffer overflow in xls_parseWorkBook() in xls.c

    Last Modified: Nov 21, 2024
    Published: Aug 15, 2023

    CVE-2023-38855

    libxls: heap buffer overflow in xls_parseWorkBook() in xls.c

    Last Modified: Nov 21, 2024
    Published: Aug 15, 2023
    Items Per Page
    Libxls_Project Vulnerabilities & Security CVEs | CVE-DB