CVE Tools

Openexr

102 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Openexr, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.

Openexr CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Openexr CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-073
2025-081
2025-090
2025-100
2025-113
2025-123
2026-010
2026-021
2026-031
2026-0411
2026-053
2026-062
2026-070
2026-0822
2026-090

Severity

How the 102 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical44%
  • High3435%
  • Medium5960%
  • Low11%

Latest CVEs

The 15 most recently published vulnerabilities affecting Openexr.

  1. CVE-2026-59981OpenEXR: Heap OOB read in SampleCountChannel row when using nonzero dataWindow7.1
  2. CVE-2026-68514OpenEXR: Heap buffer overflow in PyOpenEXR from literal/prefixed RGB channel name collision in deep images5.5
  3. CVE-2026-68515OpenEXR: Heap out-of-bounds write in exrmultiview with subsampled channel union7.1
  4. CVE-2026-68513OpenEXR: Heap buffer overflow in PyOpenEXR from literal/prefixed RGB channel name collision7.1
  5. CVE-2026-65979OpenEXR: Out-of-bounds read in HTJ2K decoder from unvalidated chunk header length (PLEN)—
  6. CVE-2026-62986OpenEXR: PyOpenEXR deep prefixed RGB stale lane disclosure4.3
  7. CVE-2026-61555OpenEXR: Empty multiView viewFromChannelName file crash5.5
  8. CVE-2026-59985OpenEXR: Heap out-of-bounds read in OpenEXRCore RLE decoding on ILP325.5
  9. CVE-2026-59984OpenEXR: Scratch buffer overflow decoding B44-compressed InputFile on ILP325.5
  10. CVE-2026-59983OpenEXR: Out-of-bounds read in DeepTiledInputFile sample-count table decode on ILP325.5
  11. CVE-2026-59982OpenEXR: DWAA InputFile AC buffer overflow on ILP32 platforms7.1
  12. CVE-2026-59189OpenEXR: Out-of-bounds read in DeepImageChannel::row() for non-zero dataWindow origin7.1
  13. CVE-2026-59187OpenEXR: exrmetrics deep pixelmode heap buffer overflow7.1
  14. CVE-2026-59186OpenEXR: Heap out-of-bounds write in TiledRgbaInputFile via integer overflow on 32-bit (ILP32) builds7.1
  15. CVE-2026-59184OpenEXR: OpenEXRUtil FlatImageChannel row nonzero dataWindow heap OOB write7.1

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store