CVE-2026-51540
published 2026-07-13CVE-2026-51540: OpENer 2.3.0 (master branch up to commit 76b95cf) is vulnerable to a severe memory corruption issue caused by an integer underflow in the processing of…
PriorityP349critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.42%
35.2th percentile
OpENer 2.3.0 (master branch up to commit 76b95cf) is vulnerable to a severe memory corruption issue caused by an integer underflow in the processing of connected explicit messages (SendUnitData).
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| opener_project | opener | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
EIPStackGroup OpENer up to 2.3.0 SendUnitData integer underflow
vuldb·2026-07-14
CVE-2026-51540 EIPStackGroup OpENer up to 2.3.0 SendUnitData integer underflow
A vulnerability, which was classified as very critical, was found in EIPStackGroup OpENer up to 2.3.0. This issue affects some unknown processing of the component SendUnitData. Executing a manipulation can lead to integer underflow.
The identification of this vulnerability is CVE-2026-51540. The attack may be launched remotely. There is no exploit available.
GHSA
OpENer 2.3.0 (master branch up to commit 76b95cf) is vulnerable to a severe memory corruption issue caused by an integer underflow in the processing of connected explicit messages (SendUnitData).
ghsa_unreviewed·2026-07-14
CVE-2026-51540 [CRITICAL] CWE-191 OpENer 2.3.0 (master branch up to commit 76b95cf) is vulnerable to a severe memory corruption issue caused by an integer underflow in the processing of connected explicit messages (SendUnitData).
OpENer 2.3.0 (master branch up to commit 76b95cf) is vulnerable to a severe memory corruption issue caused by an integer underflow in the processing of connected explicit messages (SendUnitData).
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-07-13
Published