LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-85452

Published
CVSS8.8
Severityhigh
WeaknessCWE-787
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Description

MOOS ui-moos through 50b9c6c contains a buffer overflow vulnerability in ScopeTabPane.cpp and ScopeGrid.cpp where client and variable names are formatted into fixed 1024-byte buffers using sprintf without length validation. Attackers can supply arbitrarily long MOOS identifiers that overflow the buffers when an operator selects process list entries or pokes variables, enabling code execution.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-85452

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-85452.