SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-70351

HIGH · CVSS 8.8 EPSS 0.82%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The Microsoft WebP Image Extension is vulnerable to an integer overflow or wraparound, which could allow an unauthorized attacker to execute arbitrary code remotely. This high-severity flaw poses a significant risk to systems using the affected extension, particularly in environments where untrusted images are processed. Organizations utilizing Microsoft products that incorporate this extension should prioritize patching to mitigate potential exploitation.

CVE
CVE-2026-70351
Severity
HIGH
CVSS
8.8
EPSS
0.82%
Microsoft

Original NVD Description

Integer overflow or wraparound in Microsoft WebP Image Extension allows an unauthorized attacker to execute code over a network.