CVE-2026-32864: Ni Labview
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
There is a memory corruption vulnerability due to an out-of-bounds read in mgcore_SH_25_3!aligned_free() in NI LabVIEW. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted VI file. This vulnerability affects NI LabVIEW 2026 Q1 (26.1.0) and prior versions.
Affected products
- Ni Labview: up to and including 2022; version 2023 only; version 2024 only; version 2025 only; version 2026 only
Published 2026-04-07. Last modified 2026-07-24.