SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-16243

HIGH · CVSS 7.5 EPSS 0.36% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-21 · Last synced 2026-08-20

CyberRota Analysis

AI-Generated

Eclipse OMR versions up to 0.11 are vulnerable due to a flaw in the arraycmp SIMD implementation for Z and P, which fails to validate the byte count before performing comparisons. This oversight could lead to undefined behavior or potential exploitation in applications relying on this functionality. Organizations utilizing Eclipse OMR should prioritize this vulnerability to mitigate any risks associated with improper memory handling.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-16243
Severity
HIGH
CVSS
7.5
EPSS
0.36%

Original NVD Description

In Eclipse OMR versions up to 0.11, the arraycmp SIMD implementation for Z and P does not check if the number of bytes to compare is zero.

Related CVEs

Other vulnerabilities affecting the same vendor(s)