CVE Tools

Opencv

25 CVEs tracked since 2017. Since Aug 2017, none of them reached CISA KEV.

Opencv CVEs per month

Aug 2017 to Sep 2019. Point at a month, or focus the strip and use the arrow keys.
Opencv CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2017-08130
2017-09null or fewer
2017-10null or fewer
2017-11null or fewer
2017-12null or fewer
2018-0140
2018-02null or fewer
2018-0330
2018-04null or fewer
2018-05null or fewer
2018-06null or fewer
2018-07null or fewer
2018-08null or fewer
2018-09null or fewer
2018-10null or fewer
2018-11null or fewer
2018-12null or fewer
2019-01null or fewer
2019-02null or fewer
2019-03null or fewer
2019-04null or fewer
2019-05null or fewer
2019-06null or fewer
2019-07null or fewer
2019-0830
2019-0920

Products

The products that kept showing up in Opencv's monthly top three, with their CVEs summed over those months.

  1. Opencv255 months

Latest CVEs

The 15 most recently published vulnerabilities affecting Opencv.

  1. CVE-2025-53644OpenCV contains a use after free buffer write due to an uninitialized pointer9.8
  2. CVE-2023-2618OpenCV wechat_qrcode Module decoded_bit_stream_parser.cpp decodeHanziSegment memory leak5.3
  3. CVE-2023-2617OpenCV wechat_qrcode Module decoded_bit_stream_parser.cpp decodeByteSegment null pointer dereference5.3
  4. CVE-2019-5064An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV, before version 4.2.0. A specially crafted JSON file can cause a buffer overflow, ...8.8
  5. CVE-2019-5063An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV 4.1.0. A specially crafted XML file can cause a buffer overflow, resulting in mult...8.8
  6. CVE-2019-19624An out-of-bounds read was discovered in OpenCV before 4.1.1. Specifically, variable coarsest_scale is assumed to be greater than or equal to finest_scale within the calc()/ocl_calc() functions in d...6.5
  7. CVE-2019-16249OpenCV 4.1.1 has an out-of-bounds read in hal_baseline::v_load in core/hal/intrin_sse.hpp when called from computeSSDMeanNorm in modules/video/src/dis_flow.cpp.5.3
  8. CVE-2019-15939An issue was discovered in OpenCV 4.1.0. There is a divide-by-zero error in cv::HOGDescriptor::getDescriptorSize in modules/objdetect/src/hog.cpp.5.9
  9. CVE-2019-14493An issue was discovered in OpenCV before 4.1.1. There is a NULL pointer dereference in the function cv::XMLParser::parse at modules/core/src/persistence.cpp.7.5
  10. CVE-2019-14492An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1. There is an out of bounds read/write in the function HaarEvaluator::OptFeature::calc in modules/objdetect/src/cascadedetect.hpp,...7.5
  11. CVE-2019-14491An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1. There is an out of bounds read in the function cv::predictOrdered<cv::HaarEvaluator> in modules/objdetect/src/cascadedetect.hpp,...8.2
  12. CVE-2018-7713The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of service (assertion failure) because (size.width <= (1<<20)) ma...7.5
  13. CVE-2018-7712The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of service (assertion failure) because (size.height <= (1<<20)) m...7.5
  14. CVE-2018-7714The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of service (assertion failure) because (pixels <= (1<<30)) may be...7.5
  15. CVE-2018-5268In OpenCV 3.3.1, a heap-based buffer overflow happens in cv::Jpeg2KDecoder::readComponent8u in modules/imgcodecs/src/grfmt_jpeg2000.cpp when parsing a crafted image file.5.5

The record

Peak rank
#35 in Aug 2017
Busiest month shown
Aug 2017, 13 CVEs
Months with a KEV entry
0 since Aug 2017
Monthly snapshots
5 since 2017
Opencv's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store