VYPR
Medium severity6.1NVD Advisory· Published Apr 22, 2026· Updated May 6, 2026

CVE-2026-6861

CVE-2026-6861

Description

A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure.

Affected products

1
  • cpe:2.3:a:gnu:emacs:*:*:*:*:*:*:*:*
    Range: >=28.1,<=30.2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.