| Bug | bullseye | bookworm | trixie | forky | sid | Description |
|---|
| CVE-2026-26065 | vulnerable | vulnerable | vulnerable | vulnerable | fixed | calibre is a cross-platform e-book manager for viewing, converting, ed ... |
| CVE-2026-26064 | vulnerable | vulnerable | vulnerable | vulnerable | fixed | calibre is a cross-platform e-book manager for viewing, converting, ed ... |
| CVE-2026-25731 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | vulnerable (no DSA) | vulnerable | fixed | calibre is an e-book manager. Prior to 9.2.0, a Server-Side Template I ... |
| CVE-2026-25636 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | vulnerable (no DSA) | vulnerable | fixed | calibre is an e-book manager. In 9.1.0 and earlier, a path traversal v ... |
| CVE-2026-25635 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | vulnerable (no DSA) | vulnerable | fixed | calibre is an e-book manager. Prior to 9.2.0, Calibre's CHM reader con ... |
| CVE-2025-64486 | vulnerable (no DSA, postponed) | fixed | fixed | fixed | fixed | calibre is an e-book manager. In versions 8.13.0 and prior, calibre do ... |
| Bug | Description |
|---|
| TEMP-0608822-EF2F16 | calibre file disclosure |
| TEMP-0608822-E0260C | calibre XSS |
| CVE-2024-7009 | Unsanitized user-input in Calibre <= 7.15.0 allow users with permissio ... |
| CVE-2024-7008 | Unsanitized user-input in Calibre <= 7.15.0 allow attackers to perform ... |
| CVE-2024-6782 | Improper access control in Calibre 6.9.0 ~ 7.14.0 allow unauthenticate ... |
| CVE-2024-6781 | Path traversal in Calibre <= 7.14.0 allow unauthenticated attackers to ... |
| CVE-2023-46303 | link_to_local_path in ebooks/conversion/plugins/html_input.py in calib ... |
| CVE-2021-44686 | calibre before 5.32.0 contains a regular expression that is vulnerable ... |
| CVE-2018-7889 | gui2/viewer/bookmarkmanager.py in Calibre 3.18 calls cPickle.load on i ... |
| CVE-2016-10187 | The E-book viewer in calibre before 2.75 allows remote attackers to re ... |
| CVE-2011-4126 | Race condition issues were found in Calibre at devices/linux_mount_hel ... |
| CVE-2011-4125 | A untrusted search path issue was found in Calibre at devices/linux_mo ... |
| CVE-2011-4124 | Input validation issues were found in Calibre at devices/linux_mount_h ... |
| CVE-2010-1028 | Integer overflow in the decompression functionality in the Web Open Fo ... |