GStreamer
Security Risk Profile
58
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 225 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from January 22, 2009 to present
225
Total CVEs
162
Critical+High
0
Exploited
89
Unpatched
Threat Assessment
Avg CVSS
7.8
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
89
Critical/High
Risk Level
58/100
medium
📈 5 in Last 30 Days
Severity Distribution
Critical
24High
138Medium
22Low
1Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
8Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
43
2
Integer Overflow
39
3
Null Pointer Dereference
11
4
Divide by Zero
4
5
Integer Underflow
4
Most Affected Products
1. GStreamer GStreamer307
2. Gstreamer Project Gstreamer95
3. Debian Debian Linux36
4. debian/gst-plugins-good1.033
5. ubuntu/gst-plugins-bad1.023
Recent Vulnerabilities
See more →CVE-2026-46470
CVSS 9.1critical
5/14/2026
CVE-2026-46469
CVSS 5.5medium
5/14/2026
https://seclists.org/oss-sec/2026/q2/320
unknown
10+ CVEs in GStamer
5/1/2026🔧 No Patch
https://seclists.org/oss-sec/2026/q2/315
unknown
10+ CVEs in GStamer
5/1/2026🔧 No Patch
https://seclists.org/oss-sec/2026/q2/307
unknown
10+ CVEs in GStamer
4/30/2026🔧 No Patch
ZDI-CAN-29392
unknown
ZDI-26-283: GStreamer qtdemux Stack-based Buffer Overflow Remote Code Execution Vulnerability
4/15/2026🔧 No Patch
ZDI-26-283
unknown
GStreamer qtdemux Stack-based Buffer Overflow Remote Code Execution Vulnerability
4/15/2026🔧 No Patch
https://seclists.org/oss-sec/2026/q1/317
unknown
10+ CVEs in GStamer
3/16/2026🔧 No Patch
REDHAT-BUG-2447496
CVSS 7.0high
3/13/2026🔧 No Patch
REDHAT-BUG-2447503
CVSS 7.0high
3/13/2026🔧 No Patch
Monitor GStreamer in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.