Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 09 Sep 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | mrubyc through 4.0.0 contains a null pointer dereference vulnerability in the op_enter() handler in src/vm.c when processing untrusted bytecode. Attackers can craft malicious .mrb bytecode files with OP_ENTER instructions at the top level to crash the embedding application and cause denial of service. | |
| Title | mrubyc through 4.0.0 NULL Pointer Dereference via OP_ENTER | |
| Weaknesses | CWE-476 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-09T10:07:25.743Z
Reserved: 2026-09-08T00:49:47.457Z
Link: CVE-2026-86547
No data.
Status : Received
Published: 2026-09-09T10:22:33.803
Modified: 2026-09-09T10:22:33.803
Link: CVE-2026-86547
No data.
OpenCVE Enrichment
No data.