CVE-2026-64203
Received
Received - Intake
Memory Corruption in NI LabVIEW
Vulnerability report for CVE-2026-64203, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-08-25
Last updated on: 2026-08-25
Assigner: National Instruments
Description
Description
There is a memory corruption vulnerability recently
discovered in NI LabVIEW that may result in information disclosure or arbitrary
code execution.Β Successful exploitation requires an attacker to get a
user to open a specially crafted VI.Β This vulnerability affects NI
LabVIEW 2026 Q3 (26.3.0) and prior versions.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| ni | labview | to 26.3.0 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-125 | The product reads data past the end, or before the beginning, of the intended buffer. |