AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-36331

CRITICAL · CVSS 9.1 EPSS 2.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-05-21 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-36331
Severity
CRITICAL
CVSS
9.1
EPSS
2.30%

Original NVD Description

A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ChunkAssignData. The highest threat from this vulnerability is to data confidentiality and to the service availability.