CVE-2026-54920 | AcademySoftwareFoundation OpenEXR up to 3.4.12 HTJ2K Decode Path exr_start_read assertion
A vulnerability has been found in AcademySoftwareFoundation OpenEXR up to 3.4.12 and classified as problematic. The affected element is the function exr_start_read of the component HTJ2K Decode Path. This manipulation causes reachable assertion.
This vulnerability appears as CVE-2026-54920. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.VulDB Recent EntriesRead More