OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-100504

HIGH · CVSS 7 EPSS 0.13% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-26 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

Ghidra versions up to 12.1.4 are vulnerable to a stack-based out-of-bounds write in the decompiler's leftshift128 function, which can be exploited by attackers using specially crafted binaries to trigger memory corruption. This vulnerability poses a high risk of code execution, making it critical for users and organizations relying on Ghidra for reverse engineering to prioritize updates and mitigations. Immediate action is advised to safeguard against potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-100504
Severity
HIGH
CVSS
7
EPSS
0.13%

Original NVD Description

Ghidra versions through 12.1.4 contain a stack-based out-of-bounds write vulnerability in the decompiler's leftshift128 function when processing negative shift amounts from p-code. Attackers can craft malicious binaries with specific instruction sequences that trigger the overflow when decompiled, corrupting memory and potentially achieving code execution.

Related CVEs

Other vulnerabilities affecting the same vendor(s)