← Vulnerability feed

Vulnerability record · CVE-2026-64200 · published 3 September 2026

CVE-2026-64200: Ni dasylab out-of-bounds read vulnerability

NNi · Dasylab

There is an out-of-bounds read vulnerability in DASYLab due to improper validation of user-supplied data.   This results in a read a past the end of an allocated heap buffer during string conversion.  Successful exploitation requires an attacker to get a user to open a specially crafted .DSB file.  This issue affects all versions before 2026.0.0.

8.5 CVSS 4.0 High EPSS 0.16% · top 95.8% CWE-125 · Out-of-bounds read
8.5CVSS 4.0 base score
0.16%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
22 Sep 2026Last modified by NVD

Description

There is an out-of-bounds read vulnerability in DASYLab due to improper validation of user-supplied data.   This results in a read a past the end of an allocated heap buffer during string conversion.  Successful exploitation requires an attacker to get a user to open a specially crafted .DSB file.  This issue affects all versions before 2026.0.0.

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2026-64200 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.6CVE-2026-64199Ni dasylab out-of-bounds read vulnerabilityThere is an out-of-bounds read vulnerability in DASYLab due to improper validation of user-supplied data.   This results in a read outside the bounds…EPSS 0.16%8.5CVE-2026-64197Ni dasylab out-of-bounds write vulnerabilityThere is an out-of-bounds write vulnerability in DASYLab due to improper validation of user-supplied data, resulting in a write past the end of an al…EPSS 0.16%8.5CVE-2026-64198Ni dasylab out-of-bounds read vulnerabilityThere is an out-of-bounds read vulnerability in DASYLab due to improper validation of user-supplied data.   This results in a read a few bytes past t…EPSS 0.16%8.5CVE-2026-64195Ni dasylab out-of-bounds write vulnerabilityThere is an out-of-bounds write vulnerability in DASYLab due to lack of proper validation of user-supplied data. Successful exploitation requires an …EPSS 0.16%8.5CVE-2026-64196Ni dasylab out-of-bounds write vulnerabilityThere is an out-of-bounds write vulnerability in DASYLab due to improper validation of user-supplied data, resulting in a write past the end of an al…EPSS 0.16%8.5CVE-2026-0954Ni dasylab out-of-bounds write vulnerabilityThere is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted DSB file in Digilent DASYLab.  This vulnerability m…EPSS 0.20%8.5CVE-2026-0955Ni dasylab out-of-bounds read vulnerabilityThere is a memory corruption vulnerability due to an out-of-bounds read when loading a corrupted file in Digilent DASYLab.  This vulnerability may re…EPSS 0.20%8.5CVE-2026-0956Ni dasylab out-of-bounds read vulnerabilityThere is a memory corruption vulnerability due to an out-of-bounds read when loading a corrupted file in Digilent DASYLab.  This vulnerability may re…EPSS 0.23%

Source: NIST National Vulnerability Database (record CVE-2026-64200), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.