{"id":"CVE-2026-39020","title":"An issue in WIngs3D v.2.4.1 allows a local attacker to cause a denial of service via a crafted Wavefront OBJ file","summary":"An issue in WIngs3D v.2.4.1 allows a local attacker to cause a denial of service via a crafted Wavefront OBJ file","severity":"medium","cvss":5.5,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","cwe":["CWE-20"],"published":"2026-09-09","updated":"2026-09-09","sourceUpdated":"2026-09-09T20:17:22.513","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-39020","references":[{"url":"https://bytescan.net/CVE/CVE-2026-39020.html","label":"cve@mitre.org"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-09-09T19:19:51.828Z","epss":0.00143,"epssPercentile":0.02977,"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-09T19:06:28.449640Z"},"slug":"CVE-2026-39020","body":"## Overview\n\nAn issue in WIngs3D v.2.4.1 allows a local attacker to cause a denial of service via a crafted Wavefront OBJ file\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":30,"depthScoreParts":{"impact":30.3,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}