VendorsGNUorg_modeall versions
Vulnerabilities

GNU Org Mode

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2024-30202
In Emacs before 29.3, arbitrary Lisp code is evaluated as part of turning on Org mode. This affects Org Mode before 9.6.23.
Published 2024-03-25 · Analyzed
7.8EPSS 0.011
CVE-2023-28617
org-babel-execute:latex in ob-latex.el in Org Mode through 9.6.1 for GNU Emacs allows attackers to execute arbitrary commands via a file name or directory name that contains shell metacharacters.
Published 2023-03-19 · Modified
7.8EPSS 0.005
CVE-2024-30205
In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.
Published 2024-03-25 · Analyzed
7.1EPSS 0.005
CVE-2024-30203
In Emacs before 29.3, Gnus treats inline MIME contents as trusted.
Published 2024-03-25 · Analyzed
5.5EPSS 0.006
CVE-2024-30204
In Emacs before 29.3, LaTeX preview is enabled by default for e-mail attachments.
Published 2024-03-25 · Analyzed
2.8EPSS 0.005