๐Ÿ” CVE Alert

CVE-2025-15536

MEDIUM 5.3

BYVoid OpenCC MaxMatchSegmentation.cpp MaxMatchSegmentation heap-based overflow

CVSS Score
5.3
EPSS Score
0.0%
EPSS Percentile
0th

A weakness has been identified in BYVoid OpenCC up to 1.1.9. This vulnerability affects the function opencc::MaxMatchSegmentation of the file src/MaxMatchSegmentation.cpp. This manipulation causes heap-based buffer overflow. The attack is restricted to local execution. The exploit has been made available to the public and could be used for attacks. Patch name: 345c9a50ab07018f1b4439776bad78a0d40778ec. To fix this issue, it is recommended to deploy a patch.

CWE CWE-122 CWE-119
Vendor byvoid
Product opencc
Published Jan 18, 2026
Last Updated Feb 23, 2026
Stay Ahead of the Next One

Get instant alerts for byvoid opencc

Be the first to know when new medium vulnerabilities affecting byvoid opencc are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:O/RC:C
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

BYVoid / OpenCC
1.1.0 1.1.1 1.1.2 1.1.3 1.1.4 1.1.5 1.1.6 1.1.7 1.1.8 1.1.9

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/?id.341708 vuldb.com: https://vuldb.com/?ctiid.341708 vuldb.com: https://vuldb.com/?submit.733347 github.com: https://github.com/BYVoid/OpenCC/issues/997 github.com: https://github.com/BYVoid/OpenCC/pull/1005 github.com: https://github.com/oneafter/1222/blob/main/repro github.com: https://github.com/BYVoid/OpenCC/commit/345c9a50ab07018f1b4439776bad78a0d40778ec github.com: https://github.com/BYVoid/OpenCC/

Credits

๐Ÿ” Oneafter (VulDB User)