Vulnerabilities > Onlyoffice > Core > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-06-02 CVE-2022-29777 Out-of-bounds Write vulnerability in Onlyoffice Core and Document Server
Onlyoffice Document Server v6.0.0 and below and Core 6.1.0.26 and below were discovered to contain a heap overflow via the component DesktopEditor/fontengine/fontconverter/FontFileBase.h.
network
low complexity
onlyoffice CWE-787
critical
9.8
2022-06-02 CVE-2022-29776 Out-of-bounds Write vulnerability in Onlyoffice Core and Document Server
Onlyoffice Document Server v6.0.0 and below and Core 6.1.0.26 and below were discovered to contain a stack overflow via the component DesktopEditor/common/File.cpp.
network
low complexity
onlyoffice CWE-787
critical
9.8