high · CVSS v3 7.1
CVE-2026-91794
Addressed potential issues where the application could be exposed to an Out-of-Bounds Read/Write vulnerability and crash…
Description
Addressed potential issues where the application could be exposed to an Out-of-Bounds Read/Write vulnerability and crash when handling certain U3D files, PRC files, AcroForms, JPEG/JPEG2000 images, or annotations with malformed streams or data, which attackers could exploit to execute remote code or disclose information. This occurs due to a lack of proper validation of user-supplied data before performing operations on objects.
Scores
- Severity
- high
- CVSS v2
- 5.8
- CVSS v3
- 7.1
- CVSS v4
- —
- EPSS
- —