7.8

CVSS3.1

CVE-2026-27276 - Substance3D - Stager | Use After Free (CWE-416)

Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: March 10, 2026, 6:38 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

7.8

CVSS3.1

CVE-2026-27279 - Substance3D - Stager | Out-of-bounds Write (CWE-787)

Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: March 10, 2026, 6:38 p.m. πŸ”„ Last Modified: April 16, 2026, 9:45 a.m.

9.8

CVSS3.1

CVE-2026-28292 - simple-git has blockUnsafeOperationsPlugin bypass via case-insensitive protocol.allow config key th…

`simple-git`, an interface for running git commands in any node.js application, has an issue in versions 3.15.0 through 3.32.2 that allows an attacker to bypass two prior CVE fixes (CVE-2022-25860 and CVE-2022-25912) and achieve full remote code execution on the host machine. Version 3.23.0 contain…

πŸ“… Published: March 10, 2026, 6:34 p.m. πŸ”„ Last Modified: April 15, 2026, 5 p.m.

7.8

CVSS3.1

CVE-2026-27269 - Premiere Pro | Out-of-bounds Read (CWE-125)

Premiere Pro versions 25.5 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Explo…

πŸ“… Published: March 10, 2026, 6:33 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

5.5

CVSS3.1

CVE-2026-27281 - DNG SDK | Integer Overflow or Wraparound (CWE-190)

DNG SDK versions 1.7.1 2471 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to cause the application to crash or become unresponsive. Exploitation of this issue requires user i…

πŸ“… Published: March 10, 2026, 6:23 p.m. πŸ”„ Last Modified: April 17, 2026, 11:45 a.m.

7.8

CVSS3.1

CVE-2026-27280 - DNG SDK | Out-of-bounds Write (CWE-787)

DNG SDK versions 1.7.1 2471 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: March 10, 2026, 6:23 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

5.5

CVSS3.1

CVE-2026-30980 - iccDEV has a stack overflow in CIccBasicStructFactory::CreateStruct()

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack overflow in CIccBasicStructFactory::CreateStruct() causing uncontrolled recursion/stack exhaustion and crash. This vulnerability is fixed in 2.3.1.5.

πŸ“… Published: March 10, 2026, 6:07 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

6.1

CVSS3.1

CVE-2026-31797 - iccDEV has a heap out-of-bounds read in CTiffImg::ReadLine()

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap out-of-bounds read in CTiffImg::ReadLine() when iccApplyProfiles processes a crafted TIFF image, causing memory disclosure or crash. This vulnerability is fixed in 2.3.1.5.

πŸ“… Published: March 10, 2026, 6:06 p.m. πŸ”„ Last Modified: April 16, 2026, 3:45 a.m.

7.8

CVSS3.1

CVE-2026-31796 - iccDEV has a heap-based buffer overflow in icCurvesFromXml()

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-based buffer overflow in icCurvesFromXml() causing heap memory corruption or crash. This vulnerability is fixed in 2.3.1.5.

πŸ“… Published: March 10, 2026, 6:05 p.m. πŸ”„ Last Modified: April 17, 2026, 11:45 a.m.

7.8

CVSS3.1

CVE-2026-31795 - iccDEV has a stack buffer overflow write in CIccXform3DLut::Apply()

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow write in CIccXform3DLut::Apply() corrupting stack memory or crash. This vulnerability is fixed in 2.3.1.5.

πŸ“… Published: March 10, 2026, 6:04 p.m. πŸ”„ Last Modified: April 16, 2026, 9:45 a.m.
Total resulsts: 349182
Page 1209 of 34,919
Β« previous page Β» next page
Filters