What is CVE-2026-48394?
A vulnerability in Bridge allows an out-of-bounds write when a victim opens a malicious file. This could lead to arbitrary code execution in the context of the current user. Users should avoid opening untrusted files to mitigate the risk.
Azərbaycanca: Bridge proqramında istifadəçinin zərərli faylı açması ilə işə düşən out-of-bounds write zəifliyi aşkarlanıb. Bu boşluq təcavüzkara cari istifadəçinin icazələri ilə ixtiyari kod icrasına imkan verə bilər. İstifadəçilərə etibar edilməyən faylları açmamaq tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-787
FAQ2
Which software is affected by CVE-2026-48394 and how is it exploited?
This vulnerability exists in Bridge. It is exploited via an out-of-bounds write when a user opens a malicious file.
What can an attacker achieve if CVE-2026-48394 is successfully exploited?
The attacker can achieve arbitrary code execution in the context of the current user.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.