CVE-2026-30040

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

A heap overflow in the FSViewer.exe process of FastStone Image Viewer v8.3 allows attackers to cause a execute arbitrary code in the context of the current process via supplying a crafted JPEG 2000 (JP2) file.

Published 2026-06-26. Last modified 2026-06-26.