CVE-2026-10305: Samsung Open Source Rlottie

Medium severity, CVSS 6.1. EPSS: 0.1% chance of exploitation in the next 30 days.

Out-of-bounds read vulnerability in Samsung Open Source rlottie allows Overread Buffers. This issue affects rlottie: before 223a2a41ba4f462e4abe767bebba49a366c9b9fd.

Affected products

Published 2026-06-04. Last modified 2026-07-22.