11
I Use This!
High Activity
Analyzed 1 day ago. based on code collected 1 day ago.

Project Summary

HarfBuzz is an OpenType text shaping engine.

Tags

development font fonts i18n internationalization layout library opentype otf truetype ttf typesetting typography unicode

Quick Reference

MIT License
Permitted

Commercial Use

Modify

Distribute

Sub-License

Private Use

Forbidden

Hold Liable

Required

Include Copyright

Include License

These details are provided for information only. No information here is legal advice and should not be used as such.

Project Security

Vulnerabilities per Version ( last 10 releases )

There are no reported vulnerabilities

Project Vulnerability Report

Security Confidence Index

Poor security track-record
Favorable security track-record

Vulnerability Exposure Index

Many reported vulnerabilities
Few reported vulnerabilities

Did You Know...

  • ...
    there are over 3,000 projects on the Open Hub with security vulnerabilities reported against them
  • ...
    compare projects before you chose one to use
  • ...
    nearly 1 in 3 companies have no process for identifying, tracking, or remediating known open source vulnerabilities
  • ...
    check out hot projects on the Open Hub
About Project Security

Languages

C++
79%
C
13%
6 Other
8%

30 Day Summary

Dec 24 2025 — Jan 23 2026

12 Month Summary

Jan 23 2025 — Jan 23 2026
  • 2137 Commits
    Up + 1512 (241%) from previous 12 months
  • 42 Contributors
    Up + 4 (10%) from previous 12 months

Static Analysis ( Generated by Coverity Scan for HarfBuzz )

Repository URL: https://github.com/harfbuzz/harfbuzz

Version: trunk

2025-12-17
Last Analyzed
204,633
Lines of Code Analyze
0.43
Defect Density

Defects by status for current build

212
Total defects
87
Outstanding
121
Fixed

CWE Top 25 defects

ID CWE-Name Number of Defects
190 Integer Overflow or Wraparound 18