CVE-2026-24821: A heap-based buffer over-read that might affect a system that compiles untrusted Lua code in turanszkij/WickedEngine.
Overview
- Severity
- N/A
- Exploit Status
- Not Exploited
- Patch Tuesday
- 2026-Jan
- Released
- 2026-03-05
- EPSS Score
- 0.06% (percentile: 18.7%)
Affected Products (1)
Open Source Software
- cbl2 ceph 16.2.10-11 on CBL Mariner 2.0
Revision History
- 2026-03-05: Information published.