LOW
SerenityOS
CVE published 2026-09-20
CVE-2026-94030
A security vulnerability has been detected in SerenityOS, specifically in the LibGfx component, which could lead to an integer overflow when decoding BMP pixel data. The vulnerability is rated as low severity with a CVSS score of 1.3 and is considered difficult to exploit. A patch has been provided to fix this issue. The vulnerability was detected in SerenityOS up to a specific commit (3d83e4509fd20d7438e [truncated]