Mupdf
70 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Mupdf, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
Mupdf CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 1 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 1 |
| 2025-09 | 1 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 2 |
| 2026-03 | 1 |
| 2026-04 | 2 |
| 2026-05 | 0 |
| 2026-06 | 1 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 1 |
Severity
How the 70 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical3
- High29
- Medium36
- Low2
Latest CVEs
The 15 most recently published vulnerabilities affecting Mupdf.
- CVE-2026-92413Artifex MuPDF PDF Xref Loading pdf-stream.c pdf_open_filter null pointer dereference4.3
- CVE-2025-71382MuPDF < 1.27.0-rc1 Stack Exhaustion DoS via EPUB CSS Rendering6.5
- CVE-2026-7233Artifex MuPDF CFF Index subset-cff.c fz_subset_cff_for_gids out-of-bounds3.3
- CVE-2026-40505MuPDF < 1.27 mutool ANSI Injection via Metadata3.3
- CVE-2026-3308CVE-2026-33087.8
- CVE-2025-15569Artifex MuPDF win_main.c get_system_dpi uncontrolled search path7.0
- CVE-2026-25556MuPDF 1.23.0 through 1.27.0 Barcode Decoding Double Free7.5
- CVE-2025-55780A null pointer dereference occurs in the function break_word_for_overflow_wrap() in MuPDF 1.26.4 when rendering a malformed EPUB document. Specifically, the function calls fz_html_split_flow() to s...7.5
- CVE-2025-46206An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utility. When processing a crafted PDF file containing...6.5
- CVE-2024-46657Artifex Software mupdf v1.24.9 was discovered to contain a segmentation fault via the component /tools/pdfextract.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a cra...5.5
- CVE-2024-24258freeglut 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddSubMenu function.7.5
- CVE-2024-24259freeglut through 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddMenuEntry function.7.5
- CVE-2023-51104A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in function pnm_binary_read_image() of load-pnm.c when span equals zero.7.5
- CVE-2023-51105A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in function bmp_decompress_rle4() of load-bmp.c.7.5
- CVE-2023-51106A floating point exception (divide-by-zero) vulnerability was discovered in mupdf 1.23.4 in function pnm_binary_read_image() of load-pnm.c when fz_colorspace_n returns zero.7.5
Product grouping is registry-driven, with AI assist and human review. How it works