CVE-2026-90826 | GPAC 26.07.0 MP4Box base_scenegraph.c gf_node_del out-of-bounds (Issue 3812)
A vulnerability, which was classified as problematic, has been found in GPAC 26.07.0. Affected by this issue is the function gf_node_del of the file scenegraph/base_scenegraph.c of the component MP4Box. This manipulation causes out-of-bounds read.
This vulnerability is tracked as CVE-2026-90826. The attack is restricted to local execution. Moreover, an exploit is present.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More