CVE-2024-55192: Openimageio

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*).

Affected products

Published 2025-01-23. Last modified 2026-06-17.