Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

CVE-2026-39254: SteelSeries GG (macOS) v.107.0.0 allows remote code execution

CVE-2026-39254 · published 17 days ago
Summary

A vulnerability in SteelSeries GG for macOS could allow an attacker to run malicious code on a user's computer without their permission. This could happen if a user opens a malicious file or visits a compromised website while using SteelSeries GG. To protect yourself, update to the latest version of SteelSeries GG.

Original advisory text
Buffer Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a remote attacker to execute arbitrary code via the libSSEdevice.dylib, CxAudioHidDevice::DeviceGetDescriptionString components
Buffer Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a remote attacker to execute arbitrary code via the libSSEdevice.dylib, CxAudioHidDevice::DeviceGetDescriptionString components
Severity
9.8 Critical
Exploitation
EPSS <1%
Type
CWE-120Classic Buffer Overflow
Timeline
Published17 Aug 2026
Updated3 Sep 2026
First seen17 Aug 2026
Sources
CVE-2026-39254 · MITRE
Monitor software like this
Free during beta