VulnSea

Ghidra vulnerabilities

CVEs whose affected-version data names the Ghidra package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

4 CVEsRSS

CVE-2026-96273Medium· 5.5
2d ago

Ghidra before 12.1.4 fails to validate the TYPE_COL byte in OptionsDB.createUnregisteredOption(), causing an ArrayIndexOutOfBoundsException that leaves domain objects permanently locked

Ghidra before 12.1.4 fails to validate the TYPE_COL byte in OptionsDB.createUnregisteredOption(), causing an ArrayIndexOutOfBoundsException that leaves domain objects permanently locked. Attackers can craft a malicious program database f…

▾ SunlitNationalSecurityAgency · ghidraEPSS 0.12%via NVD
CVE-2026-18718High· 7.0PoC
1mo ago

Ghidra contains an arbitrary code execution vulnerability in the Swift demangler analyzer that allows an attacker to execute arbitrary binaries by supplying a malicious Ghidra project with a crafted Swift tool directory path

Ghidra contains an arbitrary code execution vulnerability in the Swift demangler analyzer that allows an attacker to execute arbitrary binaries by supplying a malicious Ghidra project with a crafted Swift tool directory path. When a vict…

▾ MidnightNational Security Agency · GhidraEPSS 0.17%via NVD
CVE-2026-52759Medium· 5.5PoC
3mo ago

Ghidra < 12.1.1 - Denial of Service via Uncontrolled Memory Allocation in Mach-O Parser

Ghidra before 12.1.1 contains an uncontrolled memory allocation vulnerability in the Mach-O binary parser that allows attackers to cause denial of service. An attacker can supply a crafted Mach-O binary with an arbitrarily large ncmds lo…

▾ TwilightGhidra · GhidraEPSS 0.15%via CVEORG
CVE-2026-4946High· 8.8
6mo ago

Ghidra versions prior to 12.0.3 improperly process annotation directives embedded in automatically extracted binary data, resulting in arbitrary command execution when an analyst interacts with the UI

Ghidra versions prior to 12.0.3 improperly process annotation directives embedded in automatically extracted binary data, resulting in arbitrary command execution when an analyst interacts with the UI. Specifically, the @execute annotati…

▾ Twilightnsa · ghidraEPSS 0.48%via NVD
Ghidra vulnerabilities (CVEs) · VulnSea