216.73.217.22

CVE-2026-32860

· Published 07/04/2026 20:16 · Modified 08/04/2026 21:27

Labels: CVE-2026-32860 2026-04-07CVE-2026-32860CWE-787[email protected]

Essential information

Published
07/04/2026 20:16
Modified
08/04/2026 21:27
Author
Creator
CVSS
8.5 HIGH (v3) 8.5 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted LVLIB file in NI LabVIEW.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .lvlib file. This vulnerability affects NI LabVIEW 2026 Q1 (26.1.0) and prior versions.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
national instruments / labview cpe:2.3:a:national_instruments:labview:26.1.0:*:*:*:*:*:*:*
national instruments / labview cpe:2.3:a:national_instruments:labview:*:*:*:*:*:*:*:*

References