VYPR
Unrated severityNVD Advisory· Published Mar 10, 2026· Updated Mar 10, 2026

Substance3D - Painter | Out-of-bounds Read (CWE-125)

CVE-2026-21365

Description

Substance3D - Painter versions 11.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Affected products

2
  • Corel/Painterllm-fuzzy
    Range: <=11.1.2
  • Adobe/Substance3D - Painterv5
    Range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.