CVE-2026-90714

A weakness has been identified in marcobambini Gravity up to 0.9.7. The impacted element is an unknown function of the file src/utils/gravity_json.c of the component JSON parser. This manipulation causes memory corruption. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks. Upgrading to version 0.9.8 is sufficient to resolve this issue. Patch name: 9b337c3eae5833c3956bed1fc01c21c14fd443f2. It is suggested to upgrade the affected component.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-14 13:19

Updated : 2026-09-15 18:19


NVD link : CVE-2026-90714

Mitre link : CVE-2026-90714

CVE.ORG link : CVE-2026-90714


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer