SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-14255

MEDIUM · CVSS 5.5 EPSS 0.11% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Certain Autodesk products are vulnerable to an Uncontrolled Recursion issue triggered by parsing a maliciously crafted IFC file. This vulnerability can lead to application crashes, resulting in a denial-of-service condition. Organizations using affected Autodesk software should prioritize patching to mitigate potential disruptions caused by this exploit.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-14255
Severity
MEDIUM
CVSS
5.5
EPSS
0.11%

Original NVD Description

A maliciously crafted IFC file, when parsed through certain Autodesk products, can trigger an Uncontrolled Recursion vulnerability. A malicious actor may leverage this vulnerability to cause the application to terminate unexpectedly, resulting in a denial-of-service. Exploitation requires a user to open a specially crafted IFC file.