PT-2026-20485 · Squirrel · Squirrel

Oneafter

·

Published

2026-01-01

·

Updated

2026-02-18

·

CVE-2026-2661

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Squirrel versions prior to 3.2
Description A security flaw exists in Squirrel, specifically affecting the SQObjectPtr::operator function within the squirrel/sqobject.h library. This manipulation can lead to a heap-based buffer overflow. The exploit has been publicly released and may be used in attacks. The project was informed of the issue but has not yet responded.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-2661

Affected Products

Squirrel