CVE-2026-107296

CVE-2026-107296 published: msgpack5 is a msgpack v5 implementation for node.js and the browser. Prior to 6.1.0, decoding a negative signed 64-bit integer modifies the corresponding bytes in the caller-provided input buffer while computing the value. Applications that retain or reuse ...

View full NVD advisory → ← Back to CVE watch