AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-1080

HIGH · CVSS 7.8 EPSS 0.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-03-04 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.8. It affects SharePoint, Office.

CVE
CVE-2025-1080
Severity
HIGH
CVSS
7.8
EPSS
0.30%
SharePoint Office

Original NVD Description

LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An additional scheme 'vnd.libreoffice.command' specific to LibreOffice was added. In the affected versions of LibreOffice a link in a browser using that scheme could be constructed with an embedded inner URL that when passed to LibreOffice could call internal macros with arbitrary arguments. This issue affects LibreOffice: from 24.8 before < 24.8.5, from 25.2 before < 25.2.1.

Related CVEs

Other vulnerabilities affecting the same vendor(s)