PT-2026-91219 · Dvidelabs · Flatcc

·

CVE-2026-90786

·

Published

2026-09-14

·

Updated

2026-09-15

CVSS v4.0

5.5

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P
Name of the Vulnerable Software and Affected Versions Dvidelabs flatcc versions prior to 0.6.4
Description A remote attack can trigger a reachable assertion within the Duplicate Symbol Handler component. This issue occurs in the align order members() function located in the src/compiler/semantics.c file.
Recommendations Deploy patch 8b19ba4e992ebcad7f5970704d1afc5507fa5205 for versions prior to 0.6.4.

Exploit

Fix

Assertion Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-90786

Affected Products

Flatcc