5.5

CVSS3.1

CVE-2026-21365 - Substance3D - Painter | Out-of-bounds Read (CWE-125)

Substance3D - Painter versions 11.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Exploitation of this issue requires user interaction in that a vi…

πŸ“… Published: March 10, 2026, 6:47 p.m. πŸ”„ Last Modified: April 16, 2026, 9:45 a.m.

5.5

CVSS3.1

CVE-2026-27217 - Substance3D - Painter | NULL Pointer Dereference (CWE-476)

Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption to its availability. Exploitation of this issue requ…

πŸ“… Published: March 10, 2026, 6:47 p.m. πŸ”„ Last Modified: April 17, 2026, 11:45 a.m.

5.5

CVSS3.1

CVE-2026-27216 - Substance3D - Painter | Out-of-bounds Read (CWE-125)

Substance3D - Painter versions 11.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Exploitation of this issue requires user interaction in that a vi…

πŸ“… Published: March 10, 2026, 6:47 p.m. πŸ”„ Last Modified: April 17, 2026, 11:45 a.m.

5.5

CVSS3.1

CVE-2026-21363 - Substance3D - Painter | NULL Pointer Dereference (CWE-476)

Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption to services. Exploitation of this issue requires use…

πŸ“… Published: March 10, 2026, 6:47 p.m. πŸ”„ Last Modified: April 17, 2026, 11:45 a.m.

5.5

CVSS3.1

CVE-2026-27215 - Substance3D - Painter | NULL Pointer Dereference (CWE-476)

Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption to its availability. Exploitation of this issue requ…

πŸ“… Published: March 10, 2026, 6:47 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

8.2

CVSS3.1

CVE-2026-27826 - MCP Atlassian has SSRF via unvalidated X-Atlassian-Jira-Url / X-Atlassian-Confluence-Url headers

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to version 0.17.0, an unauthenticated attacker who can reach the mcp-atlassian HTTP endpoint can force the server process to make outbound HTTP requests to an arbitrary attacker-controlled URL…

πŸ“… Published: March 10, 2026, 6:46 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

7.8

CVSS3.1

CVE-2026-27274 - Substance3D - Stager | Out-of-bounds Write (CWE-787)

Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: March 10, 2026, 6:39 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

7.8

CVSS3.1

CVE-2026-27277 - Substance3D - Stager | Use After Free (CWE-416)

Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: March 10, 2026, 6:38 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

7.8

CVSS3.1

CVE-2026-27273 - Substance3D - Stager | Out-of-bounds Write (CWE-787)

Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: March 10, 2026, 6:38 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

7.8

CVSS3.1

CVE-2026-27275 - Substance3D - Stager | Out-of-bounds Write (CWE-787)

Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: March 10, 2026, 6:38 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.
Total resulsts: 349182
Page 1208 of 34,919
Β« previous page Β» next page
Filters