🔐 CVE Alert

CVE-2026-97222

MEDIUM 5.5

Gnumeric: gnumeric: heap use-after-free when opening a malformed workbook

CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th

A heap use-after-free flaw was found in Gnumeric. When a user opens a crafted Gnumeric workbook containing a malformed SheetObjectComponent element, the XML parser can dereference a freed sheet-object component, causing Gnumeric to crash.

CWE CWE-416
Vendor gnome
Product gnumeric
Published Sep 25, 2026
Stay Ahead of the Next One

Get instant alerts for gnome gnumeric

Be the first to know when new medium vulnerabilities affecting gnome gnumeric are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

Affected Versions

GNOME / Gnumeric
1.11.0 < *

References

NVD ↗ CVE.org ↗ EPSS Data ↗
access.redhat.com: https://access.redhat.com/security/cve/CVE-2026-97222 bugzilla.redhat.com: https://bugzilla.redhat.com/show_bug.cgi?id=2541397 gitlab.gnome.org: https://gitlab.gnome.org/GNOME/gnumeric/-/issues/897

Credits

Upstream acknowledges Juha Kylmänen as the original reporter.