CVE 2 LOW

ChaiScript chaiscript_defines.hpp operator use after free_CVE-2026-2655

2 / 10
LOW
CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P

Description

A vulnerability was detected in ChaiScript up to 6.1.0. The impacted element is the function chaiscript::str_less::operator of the file include/chaiscript/chaiscript_defines.hpp. The manipulation results in use after free. The attack requires a local approach. The attack requires a high level of complexity. The exploitability is regarded as difficult. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

Basic Information

ID CVE-2026-2655
Source VulDB
Published Feb 18, 2026 at 14:02
Modified Feb 18, 2026 at 14:39

Affected Product

Vendor n/a
Product ChaiScript
Version 6.0
Affected Versions n/a ChaiScript 6.0
n/a ChaiScript 6.1.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.