CVE-2026-0006
published 2026-03-02CVE-2026-0006: In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow. This could lead to remote code execution with no…
PriorityP264critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.58%
44.0th percentile
In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| platform | external_libopenapv | >= 16-qpr2-next:0 < 16-qpr2-next:2026-03-01 | 16-qpr2-next:2026-03-01 |
| platform | external_libopenapv | >= 16:0 < 16:2026-03-01 | 16:2026-03-01 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-54hc-pp69-f6fp: In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow
ghsa_unreviewed·2026-03-02
CVE-2026-0006 [CRITICAL] CWE-122 GHSA-54hc-pp69-f6fp: In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow
In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
OSV
CVE-2026-0006: In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow
osv·2026-03-01
CVE-2026-0006 CVE-2026-0006: In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow
In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2026-0006 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 9.8
CVE-2026-0006 [CRITICAL] CVE-2026-0006 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-0006 :
NixOS vulnerability analysis and mitigation
In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
Source : NVD
## 9.8
Score
Published March 2, 2026
Severity CRITICAL
CNA Score 9.8
Affected Technologies
NixOS
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 14.3
Exploitation Probability (EPSS) N/A
Affected packages and libraries
android
Sources
NVD
Nix Severity CRITICAL No Fix Added at: Mar 04, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so
Wiz
RUSTSEC-2026-0006 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
[HIGH] RUSTSEC-2026-0006 Impact, Exploitability, and Mitigation Steps | Wiz
## RUSTSEC-2026-0006 :
Rust vulnerability analysis and mitigation
This is an entry in the RustSec database for the Wasmtime security advisory
located at https://github.com/bytecodealliance/wasmtime/security/advisories/GHSA-vc8c-j3xm-xj73 For more information see the GitHub-hosted security advisory.
Source : NVD
## 4.1
Score
Published January 26, 2026
Severity MEDIUM
CNA Score N/A
Affected Technologies
Rust
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) N/A
Exploitation Probability (EPSS) N/A
Affected packages and libraries
wasmtime
Sources
NVD
Rust Has Fix Added at: Jan 27, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so you can focus on wha
2026-03-02
Published