Graphite before 1.3.15 has an integer underflow and resultant out-of-bounds write via Graphite actions, because slotat does not ensure that an offset is within the allowed slot-map range.
{
"cna_assigner": "mitre",
"cwe_ids": [
"CWE-191"
],
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/50xxx/CVE-2026-50593.json"
}"2026-08-07T21:41:23Z"
[
{
"target": {
"file": "src/inc/opcodes.h"
},
"digest": {
"line_hashes": [
"75341939611501942463571008494524416469",
"273979002683633346460868599917311641604"
],
"threshold": 0.9
},
"signature_version": "v1",
"signature_type": "Line",
"deprecated": false,
"id": "CVE-2026-50593-6391cce8",
"source": "https://github.com/silnrsi/graphite/commit/ad78c6b7319909e1540c1b134e115ced03417866"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-50593.json"