AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2026-24821.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSMicrosoft vendor recordModified Mar 05, 2026

Disclosure summary

A heap-based buffer over-read that might affect a system that compiles untrusted Lua code in turanszkij/WickedEngine.

Source-reported weakness categories

CWE-125

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

Microsoft Security Updates (CVRF) · 2026-Jan

Open original source · Updated Mar 05, 2026

A heap-based buffer over-read that might affect a system that compiles untrusted Lua code in turanszkij/WickedEngine.

Maximum of vendor-reported product scores; products and fixed builds are associations, not a universal affected-version statement.

VendorProduct / associationVersion / bounds
Microsoft update guidecbl2 ceph 16.2.10-11 on CBL Mariner 2.0 (MSRC status code 3)

Original records & references

PUBLISHED 2026-03-04T20:08:27-05:00
MODIFIED 2026-03-05T20:38:03-05:00
INGESTED 2026-10-08T12:45:23-04:00