CVE-2023-47268

MEDIUM

Prusa PrusaSlicer through 2.6.1 - Code Injection

Title source: llm
STIX 2.1

Description

In libslic3r/GCode/PostProcessor.cpp in Prusa PrusaSlicer through 2.6.1, a crafted 3mf project file can execute arbitrary code on a host where the project is sliced and G-code exported.

Exploits (1)

github WRITEUP
by Pallangyo98 · poc
https://github.com/Pallangyo98/Trickster-HTB

Scores

CVSS v3 5.3
EPSS 0.0022
EPSS Percentile 44.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-77
Status published
Published May 08, 2026
Tracked Since May 08, 2026