SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-40553

HIGH · CVSS 7.5 EPSS 0.29% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

A buffer overflow vulnerability in the ftype() routine of the gawk program's "extension/readdir.c" file could lead to program crashes and potentially allow for code execution, although the latter remains unverified. This issue affects gawk versions 5.4.0 and earlier, making it critical for users and organizations that rely on this tool for text processing to prioritize patching or upgrading to mitigate potential risks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-40553
Severity
HIGH
CVSS
7.5
EPSS
0.29%

Original NVD Description

Buffer overflow vulnerability has been found in "extension/readdir.c" program file of gawk (ftype() routine). This issue could be used to crash the program and potentially to achieve code execution, although the latter has not been confirmed to be feasible. It affects gawk in versions 5.4.0 and below.

Related CVEs

Other vulnerabilities affecting the same vendor(s)