CVE-2026-97222
Gnumeric: gnumeric: heap use-after-free when opening a malformed workbook
CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th
A heap use-after-free flaw was found in Gnumeric. When a user opens a crafted Gnumeric workbook containing a malformed SheetObjectComponent element, the XML parser can dereference a freed sheet-object component, causing Gnumeric to crash.
| CWE | CWE-416 |
| Vendor | gnome |
| Product | gnumeric |
| Published | Sep 25, 2026 |
Stay Ahead of the Next One
Get instant alerts for gnome gnumeric
Be the first to know when new medium vulnerabilities affecting gnome gnumeric are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Affected Versions
GNOME / Gnumeric
1.11.0 < *
References
Credits
Upstream acknowledges Juha Kylmänen as the original reporter.