CVE-2026-38891
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
An improper input validation in the gazebo_ros_diff_drive.cpp component of gazebo_plugins v3.9.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted geometry_msgs::Twist message.
Published 2026-07-01. Last modified 2026-07-02.