Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
4.8

ChaiScript Divide by Zero Error in Boxed Number Function

CVE-2026-3383
Summary

A security issue in ChaiScript's Boxed Number function could cause a divide by zero error if an attacker manipulates the system with local access. This could lead to a security breach. Update to version 6.1.1 or later to fix the issue.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
chaiscript chaiscript <= 6.1.0 –
Original title
A weakness has been identified in ChaiScript up to 6.1.0. This affects the function chaiscript::Boxed_Number::go of the file include/chaiscript/dispatchkit/boxed_number.hpp. Executing a manipulatio...
Original description
A weakness has been identified in ChaiScript up to 6.1.0. This affects the function chaiscript::Boxed_Number::go of the file include/chaiscript/dispatchkit/boxed_number.hpp. Executing a manipulation can lead to divide by zero. The attack requires local access. The exploit has been made available to the public and could be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.
nvd CVSS2.0 1.7
nvd CVSS3.1 5.5
nvd CVSS4.0 4.8
Vulnerability type
CWE-369
CWE-404
Published: 1 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026