Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.8

Bridge versions 16.0.2 and earlier: Malicious file can run code as user

CVE-2026-27312
Summary

If a user opens a malicious file using Bridge, it may allow an attacker to run arbitrary code with the user's permissions. This could potentially lead to data theft or system compromise. Update to Bridge version 16.0.3 or later to fix this issue.

Original title
Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation ...
Original description
Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd CVSS3.1 7.8
Vulnerability type
CWE-122 Heap-based Buffer Overflow
Published: 14 Apr 2026 · Updated: 14 Apr 2026 · First seen: 14 Apr 2026