Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Ashlar-Vellum — Vulnerabilities & Security Advisories 101

Browse all 101 CVE security advisories affecting Ashlar-Vellum. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Ashlar-Vellum provides computer-aided design and drafting software primarily serving the masonry and stone industry. The platform’s extensive history has resulted in a significant vulnerability footprint, with 101 Common Vulnerabilities and Exposures currently recorded. These security flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation, often stemming from inadequate input validation and improper access controls within the application’s architecture. While specific major incidents involving widespread exploitation remain largely undocumented in public threat intelligence feeds, the high volume of CVEs indicates systemic weaknesses in the software’s security lifecycle. Users are advised to maintain strict patch management protocols, as the legacy nature of the codebase presents persistent risks for unauthorized access and data compromise. Continuous monitoring and immediate application of vendor-provided security updates are essential to mitigate these known technical deficiencies and protect organizational infrastructure from potential exploitation.

Found 14 results / 101Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-7988 Ashlar-Vellum Graphite VC6 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — GraphiteCWE-787 7.8AIHighAI2025-09-17
CVE-2025-7987 Ashlar-Vellum Graphite VC6 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — GraphiteCWE-787 7.8AIHighAI2025-09-17
CVE-2025-7986 Ashlar-Vellum Graphite VC6 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — GraphiteCWE-787 7.8AIHighAI2025-09-17
CVE-2025-7983 Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability — GraphiteCWE-122 7.8AIHighAI2025-09-17
CVE-2025-7981 Ashlar-Vellum Graphite VC6 File Parsing Uninitialized Variable Remote Code Execution Vulnerability — GraphiteCWE-457 7.8AIHighAI2025-09-17
CVE-2025-7979 Ashlar-Vellum Graphite VC6 File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability — GraphiteCWE-121 7.8AIHighAI2025-09-17
CVE-2025-7978 Ashlar-Vellum Graphite VC6 File Parsing Uninitialized Variable Remote Code Execution Vulnerability — GraphiteCWE-457 7.8AIHighAI2025-09-17
CVE-2025-7980 Ashlar-Vellum Graphite VC6 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — GraphiteCWE-787 7.8AIHighAI2025-09-17
CVE-2024-13051 Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability — GraphiteCWE-122 7.8 -2024-12-30
CVE-2024-13050 Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability — GraphiteCWE-122 7.8 -2024-12-30
CVE-2023-34308 Ashlar-Vellum Graphite VC6 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — GraphiteCWE-787 7.8 -2024-05-03
CVE-2023-34307 Ashlar-Vellum Graphite VC6 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — GraphiteCWE-787 7.8 -2024-05-03
CVE-2023-34306 Ashlar-Vellum Graphite VC6 File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability — GraphiteCWE-121 7.8 -2024-05-03
CVE-2023-39936 Ashlar-Vellum Graphite Out-of-bounds Read — GraphiteCWE-125 7.8 High2023-10-26

This page lists every published CVE security advisory associated with Ashlar-Vellum. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.