CVE-2026-18785
o6 open62541 client_types_custom.c UA_Client_getRemoteDataTypes use after free
CVSS Score
5.3
EPSS Score
0.0%
EPSS Percentile
0th
A vulnerability was determined in o6 open62541 ca356b088ada7dee824d1b4acd07c1ff07ce242b. Impacted is the function UA_Client_getRemoteDataTypes of the file examples/custom_datatype/client_types_custom.c. Executing a manipulation can lead to use after free. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. The project closed the issue report, stating that this is not the official way to report a security vulnerability.
| CWE | CWE-416 CWE-119 |
| Vendor | o6 |
| Product | open62541 |
| Published | Aug 4, 2026 |
| Last Updated | Aug 4, 2026 |
Stay Ahead of the Next One
Get instant alerts for o6 open62541
Be the first to know when new medium vulnerabilities affecting o6 open62541 are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Affected Versions
o6 / open62541
ca356b088ada7dee824d1b4acd07c1ff07ce242b
References
Credits
Chuan Wei (SCU) ๐ VULL (VulDB User) SCU_1CP (VulDB User) VulDB CNA Team