VYPR
High severity8.1NVD Advisory· Published Nov 12, 2025· Updated Jun 17, 2026

CVE-2025-64403

CVE-2025-64403

Description

Apache OpenOffice Calc spreadsheet can contain links to other files, in the form of "external data sources". A missing Authorization vulnerability in Apache OpenOffice allowed an attacker to craft a document that would cause such links to be loaded without prompt.

This issue affects Apache OpenOffice: through 4.1.15.

Users are recommended to upgrade to version 4.1.16, which fixes the issue.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Range: <=4.1.15
  • Apache/Openofficellm-fuzzy3 versions
    <=4.1.15+ 2 more
    • (no CPE)range: <=4.1.15
    • (no CPE)range: 0
    • cpe:2.3:a:apache:openoffice:*:*:*:*:*:*:*:*range: <4.1.16

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.