CVE-2026-21303: Substance3D - Modeler | Out-of-bounds Read (CWE-125)
Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21303?
CVE-2026-21303 has a high severity due to its potential to expose sensitive information through out-of-bounds read vulnerability.
How do I fix CVE-2026-21303?
To fix CVE-2026-21303, update Substance3D Modeler to version 1.22.5 or later.
What versions are affected by CVE-2026-21303?
Substance3D Modeler versions 1.22.4 and earlier are affected by CVE-2026-21303.
What impact does CVE-2026-21303 have on users?
CVE-2026-21303 can lead to the disclosure of sensitive information stored in memory, posing a security risk to users.
Who can exploit CVE-2026-21303?
Any attacker with the right knowledge could potentially exploit CVE-2026-21303 to disclose sensitive information.