CVE-2026-23568: TeamViewer Digital Employee Experience

High severity, CVSS 8.1. EPSS: 0.2% chance of exploitation in the next 30 days.

An out-of-bounds read vulnerability in the TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 26.1 for Windows allows an attacker on the adjacent network to cause information disclosure or denial-of-service via a special crafted packet. The leaked memory could be used to bypass ASLR and facilitate further exploitation.

Affected products

  • TeamViewer Digital Employee Experience: before 26.1 (fixed in 26.1)

Published 2026-01-29. Last modified 2026-06-17.