CVE-2018-1000537: Marlinfw Marlin Firmware

Critical severity, CVSS 9.8. EPSS: 3.4% chance of exploitation in the next 30 days.

Marlin Firmware Marlin version 1.1.x and earlier contains a Buffer Overflow vulnerability in cardreader.cpp (Depending on branch/version) that can result in Arbitrary code execution. This attack appear to be exploitable via Crafted G-Code instruction/file is sent to the printer.

Affected products

  • Marlinfw Marlin Firmware: up to and including 1.1.0

Published 2018-06-26. Last modified 2026-06-17.