CVE-2026-38976

mrubyc through 3.4.1 was found to contain a NULL pointer dereference in src/vm.c in op_super() / OP_SUPER due to a missing runtime guard for top-level super.
Configurations

No configuration.

History

07 Jul 2026, 17:16

Type Values Removed Values Added
CWE CWE-476
References () https://github.com/mrubyc/mrubyc/issues/276 - () https://github.com/mrubyc/mrubyc/issues/276 -
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

06 Jul 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-06 22:16

Updated : 2026-07-07 17:16


NVD link : CVE-2026-38976

Mitre link : CVE-2026-38976

CVE.ORG link : CVE-2026-38976


JSON object : View

Products Affected

No product.

CWE
CWE-476

NULL Pointer Dereference