sqlite 3.41 has a use-after-free vulnerability in the JSON parsing logic. Remote adversaries can craft malicious JSON payload to trigger memory free followed by illegal memory access, which may lead to arbitrary code execution, sensitive information leakage and service denial.
References
Configurations
No configuration.
History
27 Jul 2026, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
| CWE | CWE-416 | |
| References | () https://github.com/programmervuln/cveadvisory-/blob/main/CVE-2026-51297 - |
27 Jul 2026, 16:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-27 16:17
Updated : 2026-07-28 16:25
NVD link : CVE-2026-51297
Mitre link : CVE-2026-51297
CVE.ORG link : CVE-2026-51297
JSON object : View
Products Affected
No product.
CWE
CWE-416
Use After Free
