VYPR

CVE Summit

by R1ck9 2q

CVEs (7)

  • CVE-2026-90683LowSep 14, 2026
    risk 0.14cvss 3.3epss

    A vulnerability was detected in GPAC up to f1219cde. Affected is the function gf_node_unregister of the file scenegraph/base_scenegraph.c of the component MP4Box. Performing a manipulation results in reachable assertion. Attacking locally is a requirement. The exploit is now…

  • CVE-2026-90613LowSep 14, 2026
    risk 0.14cvss 3.3epss

    A security flaw has been discovered in GPAC up to f1219cde. Affected by this vulnerability is the function stbl_GetSampleInfos of the file isomedia/stbl_read.c of the component MP4Box. The manipulation results in reachable assertion. The attack must be initiated from a local…

  • CVE-2026-90612LowSep 14, 2026
    risk 0.14cvss 3.3epss

    A vulnerability was identified in GPAC up to f1219cde. Affected is the function gf_sm_dump_command_list of the file scene_manager/scene_dump.c of the component MP4Box. The manipulation leads to reachable assertion. The attack must be carried out locally. The exploit is publicly…

  • CVE-2026-90611LowSep 14, 2026
    risk 0.14cvss 3.3epss

    A vulnerability was determined in GPAC up to f1219cde. This impacts the function xmt_parse_element of the file scene_manager/loader_xmt.c of the component MP4Box. Executing a manipulation can lead to reachable assertion. The attack is restricted to local execution. The exploit…

  • CVE-2026-90610LowSep 14, 2026
    risk 0.14cvss 3.3epss

    A vulnerability was found in GPAC up to f1219cde. This affects the function gf_svg_attributes_copy of the file scenegraph/svg_attributes.c of the component MP4Box. Performing a manipulation results in buffer over-read. The attack is only possible with local access. The exploit…

  • CVE-2026-90685LowSep 14, 2026
    risk 0.11cvss 2.8epss

    A vulnerability has been found in GPAC up to f1219cde. Affected by this issue is the function lsr_exec_command_list of the file laser/lsr_dec.c of the component MP4Box. The manipulation leads to reachable assertion. Local access is required to approach this attack. The exploit…

  • CVE-2026-90684LowSep 14, 2026
    risk 0.11cvss 2.8epss

    A flaw has been found in GPAC up to f1219cde. Affected by this vulnerability is the function gf_node_get_field_count of the file scenegraph/base_scenegraph.c of the component MP4Box. Executing a manipulation can lead to reachable assertion. It is possible to launch the attack on…