VYPR

Cura

by Ultimaker

Source repositories

CVEs (2)

  • CVE-2024-51330MedNov 15, 2024
    risk 0.29cvss 4.4epss 0.00

    An issue in UltiMaker Cura v.4.41 and 5.8.1 and before allows a local attacker to execute arbitrary code via Inter-process communication (IPC) mechanism between Cura application and CuraEngine processes, localhost network stack, printing settings and G-code processing and…

  • CVE-2024-8374Sep 3, 2024
    risk 0.00cvss epss 0.00

    UltiMaker Cura slicer versions 5.7.0-beta.1 through 5.7.2 are vulnerable to code injection via the 3MF format reader (/plugins/ThreeMFReader.py). The vulnerability arises from improper handling of the drop_to_buildplate property within 3MF files, which are ZIP archives…