[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2016-9580":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T14:55:33.319Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":34,"aliases":52,"duplicate_of":9,"upstream":53,"downstream":54,"duplicates":67,"related":68,"reserved_at":9,"published_at":72,"modified_at":73,"state":74,"summary":75,"references_raw":83,"kevs":113,"epss":114,"epss_history":117,"metrics":375,"affected":393},"CVE-2016-9580","An integer overflow vulnerability was found in tiftoimage function in openjpeg 2.1.2, resulting in heap buffer overflow.",null,[11,24],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-190","Integer Overflow or Wraparound","The product performs a calculation that can\n         produce an integer overflow or wraparound when the logic\n         assumes that the resulting value will always be larger than\n         the original value. This occurs when an integer value is\n         incremented to a value that is too large to store in the\n         associated representation. When this occurs, the value may\n         become a very small or negative number.","weakness","Stable","Base","Medium",[20],{"id":21,"name":22,"techniques":23},"CAPEC-92","Forced Integer Overflow",[],{"_key":25,"id":25,"name":26,"description":27,"type":15,"status":28,"abstraction":29,"likelihood_of_exploit":30,"capec":31},"CWE-122","Heap-based Buffer Overflow","A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().","Draft","Variant","High",[32],{"id":21,"name":22,"techniques":33},[],[35,44],{"_key":36,"name":37,"source":38,"url":39,"maturity":40,"reliability_score":41,"verified":42,"type":9,"platforms":43,"requires_auth":9,"exploitdb":9,"metasploit":9},"GITHUB_UCLOUVAIN_OPENJPEG","Openjpeg","github","https://github.com/uclouvain/openjpeg/issues/826","poc",0.3,false,[],{"_key":45,"name":46,"source":47,"url":48,"maturity":49,"reliability_score":50,"verified":42,"type":9,"platforms":51,"requires_auth":9,"exploitdb":9,"metasploit":9},"REF_2E9B35D33D04E998","Exploit Reference (bugzilla.redhat.com)","reference","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9580","unknown",0.2,[],[],[],[55,57,59,61,63,65],{"_key":56},"ALPINE-CVE-2016-9580",{"_key":58},"SUSE-SU-2016:3270-1",{"_key":60},"OPENSUSE-SU-2017:2567-1",{"_key":62},"MGASA-2016-0426",{"_key":64},"UBUNTU-CVE-2016-9580",{"_key":66},"DEBIAN-CVE-2016-9580",[],[69,70,71],{"_key":58},{"_key":60},{"_key":62},"2018-08-01T16:00:00.000Z","2024-08-06T02:59:01.677Z","Modified",{"cisa_kev":42,"cisa_ransomware":42,"cisa_vendor":9,"epss_severity":76,"epss_score":77,"severity":78,"severity_score":79,"severity_version":80,"severity_source":81,"severity_vector":82,"severity_status":74},"low",0.00448,"high",8.8,"v3.0","nvd","CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",[84,92,98,104,109],{"url":85,"sources":86,"tags":88},"https://github.com/uclouvain/openjpeg/issues/871",[87,81],"cve.org",[89,90,91],"X Refsource CONFIRM","Exploit","Third Party Advisory",{"url":93,"sources":94,"tags":95},"https://security.gentoo.org/glsa/201710-26",[87,81],[96,97,91],"Vendor Advisory","X Refsource GENTOO",{"url":99,"sources":100,"tags":101},"http://www.securityfocus.com/bid/94822",[87,81],[102,103,91],"VDB Entry","X Refsource BID",{"url":48,"sources":105,"tags":106},[87,81],[89,90,107,108,91],"Issue Tracking","Patch",{"url":110,"sources":111,"tags":112},"https://github.com/szukw000/openjpeg/commit/cadff5fb6e73398de26a92e96d3d7cac893af255",[87,81],[89,108,91],[],{"date":115,"score":77,"percentile":116},"2026-06-04",0.6386,[118,122,125,128,131,134,137,140,143,146,149,152,155,158,161,164,167,170,173,175,178,181,184,187,190,192,195,198,201,204,207,210,213,216,219,222,225,228,231,234,237,240,243,245,248,251,254,257,260,263,266,269,272,275,278,281,283,286,289,292,295,298,301,304,307,310,313,316,318,321,324,327,330,332,335,338,340,342,345,348,351,353,356,358,360,363,366,368,370,372],{"date":119,"score":120,"percentile":121},"2025-11-04",0.00396,0.59669,{"date":123,"score":120,"percentile":124},"2025-11-05",0.59654,{"date":126,"score":120,"percentile":127},"2025-11-06",0.59657,{"date":129,"score":120,"percentile":130},"2025-11-07",0.59675,{"date":132,"score":120,"percentile":133},"2025-11-08",0.59673,{"date":135,"score":120,"percentile":136},"2025-11-09",0.59667,{"date":138,"score":120,"percentile":139},"2025-11-10",0.59643,{"date":141,"score":120,"percentile":142},"2025-11-11",0.59656,{"date":144,"score":120,"percentile":145},"2025-11-12",0.59681,{"date":147,"score":120,"percentile":148},"2025-11-13",0.59688,{"date":150,"score":120,"percentile":151},"2025-11-14",0.59695,{"date":153,"score":120,"percentile":154},"2025-11-15",0.59685,{"date":156,"score":120,"percentile":157},"2025-11-16",0.59672,{"date":159,"score":120,"percentile":160},"2025-11-17",0.59671,{"date":162,"score":120,"percentile":163},"2025-11-18",0.57646,{"date":165,"score":120,"percentile":166},"2025-11-19",0.57663,{"date":168,"score":120,"percentile":169},"2025-11-20",0.57655,{"date":171,"score":120,"percentile":172},"2025-11-21",0.59683,{"date":174,"score":120,"percentile":145},"2025-11-22",{"date":176,"score":120,"percentile":177},"2025-11-23",0.59659,{"date":179,"score":120,"percentile":180},"2025-11-24",0.59655,{"date":182,"score":120,"percentile":183},"2025-11-25",0.59661,{"date":185,"score":120,"percentile":186},"2025-11-26",0.59662,{"date":188,"score":120,"percentile":189},"2025-11-27",0.59668,{"date":191,"score":120,"percentile":139},"2025-11-28",{"date":193,"score":120,"percentile":194},"2025-11-29",0.59618,{"date":196,"score":120,"percentile":197},"2025-11-30",0.59606,{"date":199,"score":120,"percentile":200},"2025-12-01",0.59756,{"date":202,"score":120,"percentile":203},"2025-12-02",0.59768,{"date":205,"score":120,"percentile":206},"2025-12-03",0.59774,{"date":208,"score":120,"percentile":209},"2025-12-04",0.59607,{"date":211,"score":120,"percentile":212},"2025-12-05",0.59613,{"date":214,"score":120,"percentile":215},"2025-12-06",0.59601,{"date":217,"score":120,"percentile":218},"2025-12-07",0.59593,{"date":220,"score":120,"percentile":221},"2025-12-08",0.59595,{"date":223,"score":120,"percentile":224},"2025-12-09",0.5963,{"date":226,"score":120,"percentile":227},"2025-12-10",0.59678,{"date":229,"score":120,"percentile":230},"2025-12-11",0.59698,{"date":232,"score":120,"percentile":233},"2025-12-12",0.59715,{"date":235,"score":120,"percentile":236},"2025-12-13",0.59717,{"date":238,"score":120,"percentile":239},"2025-12-14",0.59711,{"date":241,"score":120,"percentile":242},"2025-12-15",0.59687,{"date":244,"score":120,"percentile":239},"2025-12-16",{"date":246,"score":120,"percentile":247},"2025-12-17",0.59726,{"date":249,"score":120,"percentile":250},"2025-12-18",0.59765,{"date":252,"score":120,"percentile":253},"2025-12-19",0.59778,{"date":255,"score":120,"percentile":256},"2025-12-20",0.59779,{"date":258,"score":120,"percentile":259},"2025-12-21",0.59769,{"date":261,"score":120,"percentile":262},"2025-12-22",0.59761,{"date":264,"score":120,"percentile":265},"2025-12-23",0.59772,{"date":267,"score":120,"percentile":268},"2025-12-24",0.59782,{"date":270,"score":120,"percentile":271},"2025-12-25",0.59814,{"date":273,"score":120,"percentile":274},"2025-12-26",0.59808,{"date":276,"score":120,"percentile":277},"2025-12-27",0.59866,{"date":279,"score":120,"percentile":280},"2025-12-28",0.59787,{"date":282,"score":120,"percentile":253},"2025-12-29",{"date":284,"score":120,"percentile":285},"2025-12-30",0.59792,{"date":287,"score":120,"percentile":288},"2025-12-31",0.59816,{"date":290,"score":120,"percentile":291},"2026-01-01",0.59999,{"date":293,"score":120,"percentile":294},"2026-01-02",0.59985,{"date":296,"score":120,"percentile":297},"2026-01-03",0.59983,{"date":299,"score":120,"percentile":300},"2026-01-04",0.59807,{"date":302,"score":120,"percentile":303},"2026-01-05",0.59795,{"date":305,"score":120,"percentile":306},"2026-01-06",0.59804,{"date":308,"score":120,"percentile":309},"2026-01-07",0.59831,{"date":311,"score":120,"percentile":312},"2026-01-08",0.59855,{"date":314,"score":120,"percentile":315},"2026-01-09",0.59859,{"date":317,"score":120,"percentile":312},"2026-01-10",{"date":319,"score":120,"percentile":320},"2026-01-11",0.59838,{"date":322,"score":120,"percentile":323},"2026-01-12",0.59813,{"date":325,"score":120,"percentile":326},"2026-01-13",0.59776,{"date":328,"score":120,"percentile":329},"2026-01-14",0.59818,{"date":331,"score":120,"percentile":329},"2026-01-15",{"date":333,"score":120,"percentile":334},"2026-01-16",0.5984,{"date":336,"score":120,"percentile":337},"2026-01-17",0.59835,{"date":339,"score":120,"percentile":309},"2026-01-18",{"date":341,"score":120,"percentile":271},"2026-01-19",{"date":343,"score":120,"percentile":344},"2026-01-20",0.5982,{"date":346,"score":120,"percentile":347},"2026-01-21",0.59822,{"date":349,"score":120,"percentile":350},"2026-01-22",0.59827,{"date":352,"score":120,"percentile":277},"2026-01-23",{"date":354,"score":120,"percentile":355},"2026-01-24",0.59876,{"date":357,"score":120,"percentile":320},"2026-01-25",{"date":359,"score":120,"percentile":309},"2026-01-26",{"date":361,"score":120,"percentile":362},"2026-01-27",0.59839,{"date":364,"score":120,"percentile":365},"2026-01-28",0.59849,{"date":367,"score":120,"percentile":365},"2026-01-29",{"date":369,"score":120,"percentile":365},"2026-01-30",{"date":371,"score":120,"percentile":312},"2026-01-31",{"date":373,"score":120,"percentile":374},"2026-02-01",0.59988,[376,383],{"source":87,"cvss_v2_0":9,"cvss_v3_0":377,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":378,"baseSeverity":379,"vectorString":380,"impactScore":381,"exploitabilityScore":382},3.3,"LOW","CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L",2.3,4.6,{"source":81,"cvss_v2_0":384,"cvss_v3_0":389,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":385,"baseSeverity":9,"vectorString":386,"impactScore":387,"exploitabilityScore":388},6.8,"AV:N/AC:M/Au:N/C:P/I:P/A:P",6.4,8.6,{"baseScore":79,"baseSeverity":390,"vectorString":82,"impactScore":391,"exploitabilityScore":392},"HIGH",9.8,7.2,[394,402],{"ecosystem":9,"name":395,"vendor":396,"product":395,"cpe_part":397,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":398},"openjpeg2","the openjpeg project","a",[399],{"version":400,"is_range":42,"range_type":87,"version_start":400,"version_start_type":401,"version_end":400,"version_end_type":401,"fixed_in":9},"2.1.2","including",{"ecosystem":9,"name":403,"vendor":404,"product":403,"cpe_part":397,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":405},"openjpeg","uclouvain",[406],{"version":400,"is_range":42,"range_type":407,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"cpe"]