CVE-2026-2858
Published
CVSS v3
3.3
LOW
CVSS v2
1.7
LOW
Affected
2
PROJECTS
Description
A vulnerability was identified in wren-lang wren up to 0.4.0. This affects the function peekChar of the file src/vm/wren_compiler.c of the component Source File Parser. Such manipulation leads to out-of-bounds read. The attack needs to be performed locally. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet.
The Wren Programming Language. Wren is a small, fast, class-based concurrent scripting language.