[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2016-9118":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":68,"aliases":78,"duplicate_of":9,"upstream":79,"downstream":80,"duplicates":93,"related":94,"reserved_at":9,"published_at":98,"modified_at":99,"state":100,"summary":101,"references_raw":109,"kevs":135,"epss":136,"epss_history":139,"metrics":400,"affected":410},"CVE-2016-9118","Heap Buffer Overflow (WRITE of size 4) in function pnmtoimage of convert.c:1719 in OpenJPEG 2.1.2.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-119","Improper Restriction of Operations within the Bounds of a Memory Buffer","The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.","weakness","Stable","Class","High",[20,24,28,32,36,40,44,48,52,56,60,64],{"id":21,"name":22,"techniques":23},"CAPEC-10","Buffer Overflow via Environment Variables",[],{"id":25,"name":26,"techniques":27},"CAPEC-100","Overflow Buffers",[],{"id":29,"name":30,"techniques":31},"CAPEC-123","Buffer Manipulation",[],{"id":33,"name":34,"techniques":35},"CAPEC-14","Client-side Injection-induced Buffer Overflow",[],{"id":37,"name":38,"techniques":39},"CAPEC-24","Filter Failure through Buffer Overflow",[],{"id":41,"name":42,"techniques":43},"CAPEC-42","MIME Conversion",[],{"id":45,"name":46,"techniques":47},"CAPEC-44","Overflow Binary Resource File",[],{"id":49,"name":50,"techniques":51},"CAPEC-45","Buffer Overflow via Symbolic Links",[],{"id":53,"name":54,"techniques":55},"CAPEC-46","Overflow Variables and Tags",[],{"id":57,"name":58,"techniques":59},"CAPEC-47","Buffer Overflow via Parameter Expansion",[],{"id":61,"name":62,"techniques":63},"CAPEC-8","Buffer Overflow in an API Call",[],{"id":65,"name":66,"techniques":67},"CAPEC-9","Buffer Overflow in Local Command-Line Utilities",[],[69],{"_key":70,"name":71,"source":72,"url":73,"maturity":74,"reliability_score":75,"verified":76,"type":9,"platforms":77,"requires_auth":9,"exploitdb":9,"metasploit":9},"GITHUB_UCLOUVAIN_OPENJPEG","Openjpeg","github","https://github.com/uclouvain/openjpeg/issues/826","poc",0.3,false,[],[],[],[81,83,85,87,89,91],{"_key":82},"SUSE-SU-2016:3270-1",{"_key":84},"OPENSUSE-SU-2017:2567-1",{"_key":86},"DSA-4013-1",{"_key":88},"MGASA-2017-0051",{"_key":90},"UBUNTU-CVE-2016-9118",{"_key":92},"DEBIAN-CVE-2016-9118",[],[95,96,97],{"_key":82},{"_key":84},{"_key":88},"2016-10-30T22:00:00.000Z","2024-08-06T02:42:10.336Z","Modified",{"cisa_kev":76,"cisa_ransomware":76,"cisa_vendor":9,"epss_severity":102,"epss_score":103,"severity":104,"severity_score":105,"severity_version":106,"severity_source":107,"severity_vector":108,"severity_status":100},"low",0.00547,"medium",5.3,"v3.0","nvd","CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",[110,117,123,128],{"url":111,"sources":112,"tags":114},"https://security.gentoo.org/glsa/201710-26",[113,107],"cve.org",[115,116],"Vendor Advisory","X Refsource GENTOO",{"url":118,"sources":119,"tags":120},"https://github.com/uclouvain/openjpeg/issues/861",[113,107],[121,122,115],"X Refsource MISC","Exploit",{"url":124,"sources":125,"tags":126},"http://www.debian.org/security/2017/dsa-4013",[113,107],[115,127],"X Refsource DEBIAN",{"url":129,"sources":130,"tags":131},"http://www.securityfocus.com/bid/93976",[113,107],[132,133,134],"VDB Entry","X Refsource BID","Third Party Advisory",[],{"date":137,"score":103,"percentile":138},"2026-06-04",0.6821,[140,144,147,150,153,156,158,160,163,166,169,172,175,178,181,184,187,190,193,196,198,201,203,206,209,212,215,218,221,224,227,229,232,235,238,241,244,247,250,253,256,259,262,265,268,271,274,277,280,283,286,289,292,294,297,300,303,306,308,311,314,316,319,322,325,328,331,334,337,339,342,345,348,351,354,357,359,362,365,368,371,374,377,380,383,385,388,391,394,397],{"date":141,"score":142,"percentile":143},"2025-11-04",0.0044,0.62364,{"date":145,"score":142,"percentile":146},"2025-11-05",0.62352,{"date":148,"score":142,"percentile":149},"2025-11-06",0.62362,{"date":151,"score":142,"percentile":152},"2025-11-07",0.62378,{"date":154,"score":142,"percentile":155},"2025-11-08",0.62384,{"date":157,"score":142,"percentile":152},"2025-11-09",{"date":159,"score":142,"percentile":149},"2025-11-10",{"date":161,"score":142,"percentile":162},"2025-11-11",0.62375,{"date":164,"score":142,"percentile":165},"2025-11-12",0.62398,{"date":167,"score":142,"percentile":168},"2025-11-13",0.62405,{"date":170,"score":142,"percentile":171},"2025-11-14",0.62416,{"date":173,"score":142,"percentile":174},"2025-11-15",0.62407,{"date":176,"score":142,"percentile":177},"2025-11-16",0.62397,{"date":179,"score":142,"percentile":180},"2025-11-17",0.62403,{"date":182,"score":142,"percentile":183},"2025-11-18",0.6051,{"date":185,"score":142,"percentile":186},"2025-11-19",0.60522,{"date":188,"score":142,"percentile":189},"2025-11-20",0.60512,{"date":191,"score":142,"percentile":192},"2025-11-21",0.6241,{"date":194,"score":142,"percentile":195},"2025-11-22",0.6242,{"date":197,"score":142,"percentile":165},"2025-11-23",{"date":199,"score":142,"percentile":200},"2025-11-24",0.62392,{"date":202,"score":142,"percentile":165},"2025-11-25",{"date":204,"score":142,"percentile":205},"2025-11-26",0.62401,{"date":207,"score":142,"percentile":208},"2025-11-27",0.62406,{"date":210,"score":142,"percentile":211},"2025-11-28",0.62387,{"date":213,"score":142,"percentile":214},"2025-11-29",0.62363,{"date":216,"score":142,"percentile":217},"2025-11-30",0.62354,{"date":219,"score":142,"percentile":220},"2025-12-01",0.62517,{"date":222,"score":142,"percentile":223},"2025-12-02",0.62533,{"date":225,"score":142,"percentile":226},"2025-12-03",0.62538,{"date":228,"score":142,"percentile":149},"2025-12-04",{"date":230,"score":103,"percentile":231},"2025-12-05",0.66957,{"date":233,"score":103,"percentile":234},"2025-12-06",0.66961,{"date":236,"score":103,"percentile":237},"2025-12-07",0.66953,{"date":239,"score":103,"percentile":240},"2025-12-08",0.66958,{"date":242,"score":103,"percentile":243},"2025-12-09",0.66992,{"date":245,"score":103,"percentile":246},"2025-12-10",0.67039,{"date":248,"score":103,"percentile":249},"2025-12-11",0.67058,{"date":251,"score":103,"percentile":252},"2025-12-12",0.67082,{"date":254,"score":103,"percentile":255},"2025-12-13",0.67089,{"date":257,"score":103,"percentile":258},"2025-12-14",0.6709,{"date":260,"score":103,"percentile":261},"2025-12-15",0.67088,{"date":263,"score":103,"percentile":264},"2025-12-16",0.67096,{"date":266,"score":103,"percentile":267},"2025-12-17",0.6711,{"date":269,"score":103,"percentile":270},"2025-12-18",0.67146,{"date":272,"score":103,"percentile":273},"2025-12-19",0.67165,{"date":275,"score":103,"percentile":276},"2025-12-20",0.67164,{"date":278,"score":103,"percentile":279},"2025-12-21",0.67152,{"date":281,"score":103,"percentile":282},"2025-12-22",0.67184,{"date":284,"score":103,"percentile":285},"2025-12-23",0.67179,{"date":287,"score":103,"percentile":288},"2025-12-24",0.67187,{"date":290,"score":103,"percentile":291},"2025-12-25",0.67218,{"date":293,"score":103,"percentile":291},"2025-12-26",{"date":295,"score":103,"percentile":296},"2025-12-27",0.67271,{"date":298,"score":103,"percentile":299},"2025-12-28",0.6719,{"date":301,"score":103,"percentile":302},"2025-12-29",0.67182,{"date":304,"score":103,"percentile":305},"2025-12-30",0.67197,{"date":307,"score":103,"percentile":291},"2025-12-31",{"date":309,"score":103,"percentile":310},"2026-01-01",0.67395,{"date":312,"score":103,"percentile":313},"2026-01-02",0.67381,{"date":315,"score":103,"percentile":313},"2026-01-03",{"date":317,"score":103,"percentile":318},"2026-01-04",0.67214,{"date":320,"score":103,"percentile":321},"2026-01-05",0.67204,{"date":323,"score":103,"percentile":324},"2026-01-06",0.67215,{"date":326,"score":103,"percentile":327},"2026-01-07",0.67234,{"date":329,"score":103,"percentile":330},"2026-01-08",0.67248,{"date":332,"score":103,"percentile":333},"2026-01-09",0.67258,{"date":335,"score":103,"percentile":336},"2026-01-10",0.6726,{"date":338,"score":103,"percentile":330},"2026-01-11",{"date":340,"score":103,"percentile":341},"2026-01-12",0.67235,{"date":343,"score":103,"percentile":344},"2026-01-13",0.6723,{"date":346,"score":103,"percentile":347},"2026-01-14",0.67264,{"date":349,"score":103,"percentile":350},"2026-01-15",0.67268,{"date":352,"score":103,"percentile":353},"2026-01-16",0.67284,{"date":355,"score":103,"percentile":356},"2026-01-17",0.67273,{"date":358,"score":103,"percentile":333},"2026-01-18",{"date":360,"score":103,"percentile":361},"2026-01-19",0.67242,{"date":363,"score":103,"percentile":364},"2026-01-20",0.67255,{"date":366,"score":103,"percentile":367},"2026-01-21",0.67267,{"date":369,"score":103,"percentile":370},"2026-01-22",0.67277,{"date":372,"score":103,"percentile":373},"2026-01-23",0.67308,{"date":375,"score":103,"percentile":376},"2026-01-24",0.67318,{"date":378,"score":103,"percentile":379},"2026-01-25",0.67285,{"date":381,"score":103,"percentile":382},"2026-01-26",0.67275,{"date":384,"score":103,"percentile":353},"2026-01-27",{"date":386,"score":103,"percentile":387},"2026-01-28",0.67294,{"date":389,"score":103,"percentile":390},"2026-01-29",0.67292,{"date":392,"score":103,"percentile":393},"2026-01-30",0.67301,{"date":395,"score":103,"percentile":396},"2026-01-31",0.67303,{"date":398,"score":103,"percentile":399},"2026-02-01",0.67451,[401],{"source":107,"cvss_v2_0":402,"cvss_v3_0":407,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":403,"baseSeverity":9,"vectorString":404,"impactScore":405,"exploitabilityScore":406},5,"AV:N/AC:L/Au:N/C:N/I:N/A:P",2.9,10,{"baseScore":105,"baseSeverity":408,"vectorString":108,"impactScore":409,"exploitabilityScore":406},"MEDIUM",2.3,[411],{"ecosystem":9,"name":412,"vendor":413,"product":412,"cpe_part":414,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":415},"openjpeg","uclouvain","a",[416],{"version":417,"is_range":76,"range_type":418,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.1.2","cpe"]