CVE-2026-38973
MEDIUMmrubyc <= 3.4.1 - Out-of-Bounds Read in Missing-Method Lookup via mrbc_find_method()
Title source: llmDescription
mrubyc through release3.4.1 was found to contain an out-of-bounds read in builtin missing-method lookup inside mrbc_find_method().
Scores
CVSS v3
4.4
EPSS
0.0016
EPSS Percentile
5.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-125
Status
published
Published
Jul 06, 2026
Tracked Since
Jul 07, 2026