CVE detail
CVE-2026-15184
A vulnerability was found in GNU LibreDWG up to 0.13.4. The impacted element is the function dwg_next_entity of the file src/dwg.c of the component DWG File Handler. Performing a manipulation of the argument next_obj results in null pointer dereference. The attack must be initiated from a local position. The exploit has been made public and could be used. Upgrading to version 0.14 is sufficient to resolve this issue. The patch is named dde45dac3c4d902e4d8fed150a8017b9732019c9. Upgrading the affected component is recommended. Different than CVE-2026-9503.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 23.0 · diversity 11.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 9
- within the 30d window
- Peak daily
- 9
- highest bucket
Evidence
Source links by recency
9 source links · newest first
- https://www.gnu.org/www.gnu.org
No excerpt available.
Third Party Advisorywww.gnu.orgJul 9, 2026, 1:16 PM - https://vuldb.com/vuln/377110/ctivuldb.com
No excerpt available.
Exploitvuldb.comJul 9, 2026, 1:16 PM - https://vuldb.com/vuln/377110vuldb.com
No excerpt available.
Exploitvuldb.comJul 9, 2026, 1:16 PM - https://vuldb.com/submit/851192vuldb.com
No excerpt available.
Exploitvuldb.comJul 9, 2026, 1:16 PM - https://vuldb.com/cve/CVE-2026-15184vuldb.com
No excerpt available.
Exploitvuldb.comJul 9, 2026, 1:16 PM No excerpt available.
Exploitgithub.comJul 9, 2026, 1:16 PMNo excerpt available.
Exploitgithub.comJul 9, 2026, 1:16 PMNo excerpt available.
Exploitgithub.comJul 9, 2026, 1:16 PMNo excerpt available.
Exploitgithub.comJul 9, 2026, 1:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-17500CVSS 6.9 · Medium
A vulnerability was detected in ggml-org llama.cpp d006858/e15efe0. This affects the function _visit_pattern of the file common/json-schema-to-grammar.cpp. The manipulation result…
- CVE-2026-15690CVSS 1.3 · Low
A vulnerability was identified in open62541 up to 1.5.5. Affected by this issue is the function responseReadNamespacesArray of the file src/client/ua_client_connect.c of the compo…
- CVE-2026-14790CVSS 1.9 · Low
A flaw has been found in GPAC 26.02.0. This affects the function nhmldump_send_frame of the file src/filters/write_nhml.c of the component Media File Handler. Executing a manipula…
- CVE-2026-10298CVSS 1.9 · Low
A security flaw has been discovered in ggml-org whisper.cpp up to 1.8.2. This vulnerability affects the function whisper_model_load of the file ggml/src/ggml.c. The manipulation r…
- CVE-2026-10199CVSS 1.9 · Low
A vulnerability has been found in Assimp up to 6.0.4. Affected by this issue is the function glTF2::LazyDict in the library glTF2Asset.h. Such manipulation of the argument operato…
- CVE-2026-10198CVSS 1.9 · Low
A flaw has been found in Assimp up to 6.0.4. Affected by this vulnerability is the function Assimp::glTFImporter::ImportMeshes of the file glTFImporter.cpp of the component glTFIm…