SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-86303

HIGH · CVSS 7.3 EPSS 0.31% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-07 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The vulnerability in the lds function of the md.c file in 92181 markdown allows for an out-of-bounds read, which can be exploited remotely. This poses a significant risk to systems using this software, particularly those that handle untrusted input. Organizations utilizing this markdown implementation should prioritize applying the available patch to mitigate potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-86303
Severity
HIGH
CVSS
7.3
EPSS
0.31%

Original NVD Description

A vulnerability was determined in 92181 markdown up to 058cab0cb7fb245a0ccc6b8446963ff8d573558f. Affected by this issue is the function lds of the file md.c. Executing a manipulation can lead to out-of-bounds read. The attack can be executed remotely. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. This patch is called c000d2f9cf390c315378d3717cf20911cf3e80a6. A patch should be applied to remediate this issue.