{"id":"CVE-2026-18784","published":"2026-08-04T17:16:48.473","lastModified":"2026-08-05T16:16:54.870","description":"A vulnerability was found in o6 open62541 up to 1.5.5. This issue affects the function UA_Client_readNodeClassAttribute of the file src/client/ua_client_highlevel.c. Performing a manipulation results in heap-based buffer overflow. Attacking locally is a requirement. The exploit has been made public and could be used. The project closed the issue report, stating that this is not the official way to report a security vulnerability.","cvssScore":5.3,"cvssSeverity":"MEDIUM","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","cwes":["CWE-119","CWE-122"],"vendors":[],"products":[],"references":[{"url":"https://github.com/gff-cw/information/issues/11","tags":[]},{"url":"https://github.com/open62541/open62541/issues/8139","tags":[]},{"url":"https://vuldb.com/cve/CVE-2026-18784","tags":[]},{"url":"https://vuldb.com/submit/857012","tags":[]},{"url":"https://vuldb.com/vuln/385786","tags":[]},{"url":"https://vuldb.com/vuln/385786/cti","tags":[]}],"exploitRefs":[{"url":"https://github.com/gff-cw/information/issues/11","tags":[]},{"url":"https://github.com/open62541/open62541/issues/8139","tags":[]}],"hasPoc":true,"ai":null}