Xorg
3 CVEs tracked since 2018. Since Jul 2018, none of them reached CISA KEV.
Xorg CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2018-07 | 3 | 0 |
Products
The products that kept showing up in Xorg's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Xorg.
- CVE-2026-94281Out-of-bounds read in libXi's XListInputDevices() class parsing6.5
- CVE-2026-93545Out-of-bounds read in libXi's XListInputDevices()6.5
- CVE-2026-93544Out-of-bounds read in libXi's XI2 XIQueryDevice reply parsing6.5
- CVE-2026-93543Out-of-bounds read in libXi's XI2 class parser7.4
- CVE-2026-93542Out-of-bounds read in libXi's XI2 class parsing via size_classes() and copy_classes()6.5
- CVE-2026-93541Out-of-bounds read in libXi's XQueryDeviceState()6.5
- CVE-2026-88807libXrender RenderQueryPictFormats Reply Heap-based Buffer Overflow—
- CVE-2026-88806libX11 XkbGetMap Reply Heap-based Buffer Overflow7.5
- CVE-2026-56003libXfont2 computeProps Property Buffer Heap Buffer Overflow8.5
- CVE-2026-56002libXfont2 PCF Font Parsing Heap Buffer Overflow8.5
- CVE-2026-56001libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow8.5
- CVE-2026-55999xorg-server / xwayland glamor font atlas Heap Buffer Overflow8.5
- CVE-2026-56000xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent()7.8
- CVE-2026-50263Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free information disclosure in createsaverwindow()5.5
- CVE-2026-50262Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds read/write in glx changedrawableattributes5.5
The record
- Peak rank
- #154 in Jul 2018
- Busiest month shown
- Jul 2018, 3 CVEs
- Months with a KEV entry
- 0 since Jul 2018
- Monthly snapshots
- 1 since 2018