CVE-2020-22617: Ardour

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

Ardour v5.12 contains a use-after-free vulnerability in the component ardour/libs/pbd/xml++.cc when using xmlFreeDoc and xmlXPathFreeContext.

Affected products

  • Ardour Ardour: version 5.12 only

Published 2021-10-08. Last modified 2026-06-17.