CVE-2026-54616 | M2Team NanaZip prior 6.0.1698.0/6.5.1742.0 SquashFS SquashfsHandler.cpp Lz4Decode heap-based overflow
A vulnerability, which was classified as critical, was found in M2Team NanaZip. This affects the function Lz4Decode of the file NanaZip.Core/SevenZip/CPP/7zip/Archive/SquashfsHandler.cpp of the component SquashFS Handler. The manipulation results in heap-based buffer overflow.
This vulnerability is known as CVE-2026-54616. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.VulDB Recent EntriesRead More