CtanCVEs & Vulnerabilities

8 CVEs affecting Ctan products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.

Most Affected Products

mathtex 6mimetex 2
CVE-2024-40446CRITICAL

An issue in forkosh Mime Tex before v.1.77 allows an attacker to execute arbitrary code via a crafted script

22 Apr 2025
9.8
CVSS
CVE-2024-40445HIGH

A directory traversal vulnerability in forkosh Mime TeX before version 1.77 allows attackers on Windows systems to read or append arbitrary files by manipulating crafted input paths.

22 Apr 2025
7.3
CVSS
CVE-2023-51890HIGH

An infinite loop issue discovered in Mathtex 1.05 and before allows a remote attackers to consume CPU resources via crafted string in the application URL.

24 Jan 2024
7.5
CVSS
CVE-2023-51889CRITICAL

Stack Overflow vulnerability in the validate() function in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in the application URL.

24 Jan 2024
9.8
CVSS
CVE-2023-51888HIGH

Buffer Overflow vulnerability in the nomath() function in Mathtex v.1.05 and before allows a remote attacker to cause a denial of service via a crafted string in the application URL.

24 Jan 2024
7.5
CVSS
CVE-2023-51887CRITICAL

Command Injection vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in application URL.

24 Jan 2024
9.8
CVSS
CVE-2023-51886HIGH

Buffer Overflow vulnerability in the main() function in Mathtex 1.05 and before allows a remote attacker to cause a denial of service when using \convertpath.

24 Jan 2024
7.5
CVSS
CVE-2023-51885CRITICAL

Buffer Overflow vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via the length of the LaTeX string component.

24 Jan 2024
9.8
CVSS
← PrevPage 1 / 1Next →
Ctan CVEs & Vulnerabilities — 8 Tracked