HIGHVulnerability
Verified
Global
NVD HIGH: CVE-2026-27309 — Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free...
Friday, March 27, 2026 at 10:16 PM UTC·Source: NIST NVD
Updated: Thursday, April 2, 2026 at 05:46 PM UTC
Executive Summary
Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Analysis
Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVSS Score: 7.8. Published: 2026-03-27T22:16:20.497.