CVE-2026-21337: Substance3D - Designer | Out-of-bounds Read (CWE-125)
Substance3D - Designer versions 15.1.0 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21337?
CVE-2026-21337 has a medium severity rating due to its potential for memory exposure.
How do I fix CVE-2026-21337?
To fix CVE-2026-21337, users should upgrade to a version of Substance3D Designer later than 15.1.0.
What versions of Substance3D Designer are affected by CVE-2026-21337?
Substance3D Designer versions 15.1.0 and earlier are affected by CVE-2026-21337.
What type of vulnerability is CVE-2026-21337?
CVE-2026-21337 is classified as an Out-of-bounds Read vulnerability (CWE-125).
What can an attacker do with CVE-2026-21337?
An attacker could exploit CVE-2026-21337 to access sensitive information stored in memory.