CVE-2026-90794 | GPAC up to f1219cde MP4Box scenegraph/vrml_tools.c gf_sg_script_load use after free (Issue 3799)
A vulnerability, which was classified as critical, has been found in GPAC up to f1219cde. The affected element is the function gf_sg_script_load of the file scenegraph/vrml_tools.c of the component MP4Box. Performing a manipulation results in use after free.
This vulnerability is cataloged as CVE-2026-90794. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More