VDB

CVE-2026-25635

CVE-2026-25635 PUBLISHED CVSS 8.600000381469727 HIGH

calibre is an e-book manager. Prior to 9.2.0, Calibre's CHM reader contains a path traversal vulnerability that allows arbitrary file writes anywhere the user has write permissions. On Windows (haven't tested on other OS's), this can lead to Remote Code Execution by writing a payload to the Startup folder, which executes on next login. This vulnerability is fixed in 9.2.0.

EPSS 0.44% · 36.6th percentile

Risk Scores

CVSS 3.1
8.600000381469727
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
EPSS Score
0.44%
36.6th percentile

Affected Products

VendorProductVersions
kovidgoyalcalibre< 9.2.0, < 9.2.0
calibre-ebookcalibre0, 0

Timeline

  • Feb 4, 2026 CVE ID Reserved
  • Feb 6, 2026 CVE Published
  • Feb 6, 2026 PoC Published
  • Feb 6, 2026 PoC Published
  • Feb 6, 2026 PoC Published
  • Feb 7, 2026 EPSS Score
  • Feb 9, 2026 EPSS Score
  • Feb 11, 2026 CVE Updated
  • Feb 12, 2026 EPSS Score
  • Feb 14, 2026 EPSS Score
  • Feb 15, 2026 PoC Published
  • Feb 16, 2026 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›