openmcdf CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

openmcdf vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to openmcdf, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-41511 OpenMcdf is a fully .NET / C# library to manipulate Compound File Binary File Format files, also known as Structured Storage. Prior to version 3.1.3, OpenMcdf does not detect cycles in the directory entry red-black tree of a Compound File Binary (CFB) document. A crafted CFB file with a cycle in the LeftSiblingID / RightSiblingID chain causes Storage.EnumerateEntries() and Storage.OpenStream() to loop indefinitely, consuming the calling thread with no possibility of recovery via try/catch. This [email protected] 6.2 0.01% 2026-05-08 2026-06-05
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence