Security Advisory

CVE-2026-18444

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-25 16:09:03
Last updated 2026-08-31 15:15:06
Assigner NI
CVSS score 6.9
State PUBLISHED

Description

There is an integer conversion vulnerability resulting in an out-of-bounds read when loading images recently discovered in NI LabVIEW.  This may result in information disclosure or arbitrary code execution.  Successful exploitation requires an attacker to get a user to open a specially crafted VI file.  This vulnerability affects NI LabVIEW 2026 Q3 and prior versions.