3ds Max
Vendor:
First CVE: Dec 31, 2005 · Active for 20 years
55
Total CVEs
More Total CVEs than 98% of tracked products
9.2
Avg CVEs / Year
Higher CVE frequency than 95% of tracked products
7.7
Avg CVSS
Higher Avg CVSS than 62% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact 3ds Max over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 2005
20 years ago
Most Recent CVE
May 26, 2026
61 days ago
CVE Severity & Scoring
3ds Max55 CVEs
95%
All CVEs352,719 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local53 (96.4%)
Network0 (0.0%)
Unknown2 (3.6%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low53 (96.4%)
High0 (0.0%)
Unknown2 (3.6%)
User Interaction
None4 (7.3%)
Unknown2 (3.6%)
Required49 (89.1%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None53 (96.4%)
Unknown2 (3.6%)
Top CVEs
Signals from CVEs in this product scope (55 CVEs).
55 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-3577HIGH Autodesk 3D Studio Max (3DSMax) 6 through 9 and 2008 through 2010 allows remote attackers to execute arbitrary code via a .max file with a MAXScript statement that calls the DOSCom | Nov 24, 2009 | 9.3 | 34 | NO | YES |
CVE-2026-7454HIGH A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbi | May 26, 2026 | 7.8 | 33 | NO | NO |
CVE-2026-7452HIGH A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbi | May 26, 2026 | 7.8 | 29 | NO | NO |
CVE-2026-7451HIGH A maliciously crafted TIF file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a c | May 26, 2026 | 7.8 | 29 | NO | NO |
CVE-2025-9455HIGH A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerabili | Dec 16, 2025 | 7.8 | 27 | NO | NO |
CVE-2025-9452HIGH A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability. A malicious actor can leverage this vulnerability to | Dec 16, 2025 | 7.8 | 27 | NO | NO |
CVE-2026-0661HIGH A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbi | Feb 4, 2026 | 8.4 | 26 | NO | NO |
CVE-2026-0660HIGH A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can cause a Stack-Based Buffer Overflow vulnerability. A malicious actor can leverage this vulnerability to ex | Feb 4, 2026 | 8.4 | 26 | NO | NO |
CVE-2026-0538HIGH A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to execute a | Feb 4, 2026 | 8.4 | 26 | NO | NO |
CVE-2026-0537HIGH A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbi | Feb 4, 2026 | 8.4 | 26 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (55 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
1.8% of CVEs· 87th percentile
Social Chatter
Signals from CVEs in this product scope (55 CVEs).
Media Mentions
Signals from CVEs in this product scope (55 CVEs).
Top CNAs Publishing CVEs For 3ds Max
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 9 | 1 | 9.3 | 5.1% | 0 | 1 |
| 8 | 1 | 9.3 | 5.1% | 0 | 1 |
| 7 | 2 | 7.0 | 2.8% | 0 | 1 |
| 6 | 1 | 9.3 | 5.1% | 0 | 1 |
| 2027 | 5 | 6.9 | 0.1% | 0 | 0 |
| 2026 | 5 | 6.9 | 0.1% | 0 | 0 |
| 2023 | 1 | 7.8 | 0.4% | 0 | 0 |
| 2022 | 2 | 7.8 | 0.5% | 0 | 0 |
| 2021 | 1 | 7.8 | 0.7% | 0 | 0 |
| 2010 | 1 | 9.3 | 5.1% | 0 | 1 |
| 2009 | 1 | 9.3 | 5.1% | 0 | 1 |
| 2008 | 1 | 9.3 | 5.1% | 0 | 1 |