ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-28589”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-28589
Published
2021-08-11
CVSS:
9.6
ShadowTrackr CVSS:
6.6
Summary:
An improper array index validation vulnerability exists in the LoadObj functionality of tinyobjloader v2.0-rc1 and tinyobjloader development commit 79d4421. A specially crafted file could lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.