Missing Authorization in OpenOffice - CVE-2025-64407
Published: November 12, 2025
OpenOffice
Detailed vulnerability description
The vulnerability allows a remote attacker to gain access to sensitive information.
The vulnerability exists due to missing authorization checks. A remote attacker can trick the victim into opening a specially crafted documents with a certain URI scheme linking to external files and exfiltrate arbitrary INI file values and environment variables.