๐Ÿ” CVE Alert

CVE-2026-94090

MEDIUM 6.3

JusticeRage Manalyze PE Parser pe.cpp _parse_debug integer underflow

CVSS Score
6.3
EPSS Score
0.0%
EPSS Percentile
0th

A security flaw has been discovered in JusticeRage Manalyze 1.0.0. The affected element is the function PE::_parse_debug of the file manape/pe.cpp of the component PE Parser. The manipulation of the argument misc.Length results in integer underflow. The attack may be performed from remote. The patch is identified as 3e299685759f4f767088871de58c5d07f98ee382. A patch should be applied to remediate this issue.

CWE CWE-191 CWE-189
Vendor justicerage
Product manalyze
Published Sep 20, 2026
Stay Ahead of the Next One

Get instant alerts for justicerage manalyze

Be the first to know when new medium vulnerabilities affecting justicerage manalyze are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L/E:X/RL:O/RC:C
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

JusticeRage / Manalyze
1.0.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/vuln/408019 vuldb.com: https://vuldb.com/vuln/408019/cti vuldb.com: https://vuldb.com/cve/CVE-2026-94090 vuldb.com: https://vuldb.com/submit/952519 github.com: https://github.com/JusticeRage/Manalyze/commit/3e299685759f4f767088871de58c5d07f98ee382 github.com: https://github.com/JusticeRage/Manalyze/

Credits

๐Ÿ” akbarov (VulDB User)