CVE-2026-101204: Faststone Image Viewer

Medium severity, CVSS 6.3. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability was found in FastStone Image Viewer up to 8.3. This affects an unknown function of the file FSViewer.exe of the component TGA Image Handler. The manipulation results in out-of-bounds read. The attack can be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.

Affected products

  • Faststone Image Viewer: version 8.0 only; version 8.1 only; version 8.2 only; version 8.3 only

Published 2026-09-28. Last modified 2026-10-01.