CVE-2026-4012 is a low-severity out-of-bounds read vulnerability in the 'rxi fe' project, affecting releases up to a specific commit (ed4cda96bd582cbb08520964ba627efb40f3dd91). Specific affected versions are not available due to the project's rolling release model. Rated CVSS 3.3 (Low), exploitation requires local access and low privileges, potentially leading to limited information disclosure. Although the exploit has been publicly disclosed, there are no known exploits in major databases, and community attention is minimal, with the project yet to respond.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Rxi | Fe | ed4cda96bd582cbb08520964ba627efb40f3dd91CNA affected |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.