11
I Use This!
High Activity
Analyzed 14 days ago. based on code collected 14 days ago.

Project Summary

HarfBuzz is an OpenType text shaping engine.

Tags

development font fonts i18n internationalization layout library opentype otf truetype ttf typesetting typography unicode

Quick Reference

MIT License
Permitted

Commercial Use

Modify

Distribute

Sub-License

Private Use

Forbidden

Hold Liable

Required

Include Copyright

Include License

These details are provided for information only. No information here is legal advice and should not be used as such.

Project Security

Vulnerabilities per Version ( last 10 releases )

Project Vulnerability Report

Security Confidence Index

Poor security track-record
Favorable security track-record

Vulnerability Exposure Index

Many reported vulnerabilities
Few reported vulnerabilities

Did You Know...

  • ...
    there are over 3,000 projects on the Open Hub with security vulnerabilities reported against them
  • ...
    data presented on the Open Hub is available through our API
  • ...
    in 2016, 47% of companies did not have formal process in place to track OS code
  • ...
    you can embed statistics from Open Hub on your site
About Project Security

Languages

C++
79%
C
13%
6 Other
8%

30 Day Summary

Dec 31 2025 — Jan 30 2026

12 Month Summary

Jan 30 2025 — Jan 30 2026
  • 2063 Commits
    Up + 1374 (199%) from previous 12 months
  • 42 Contributors
    Up + 6 (16%) from previous 12 months

Static Analysis ( Generated by Coverity Scan for HarfBuzz )

Repository URL: https://github.com/harfbuzz/harfbuzz

Version: trunk

2026-01-29
Last Analyzed
204,633
Lines of Code Analyze
0.43
Defect Density

Defects by status for current build

212
Total defects
87
Outstanding
121
Fixed

CWE Top 25 defects

ID CWE-Name Number of Defects
190 Integer Overflow or Wraparound 18