CVE-2026-4734 CRITICAL

CVE-2026-4734: Heap Buffer Overflow in yoyofr/modizer

Vendor Yoyofr
Product modizer
Weakness CWE-119
Published March 24, 2026
Last update March 24, 2026

CVSS base score

9.4/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:A/S:N/AU:Y/R:U/V:D/RE:L/U:Clear

What the vulnerability does

01Description

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in yoyofr modizer (libs/libopenmpt/openmpt-trunk/include/premake/contrib/curl/lib modules). This vulnerability is associated with program files imap.C‎. This issue affects modizer: before v4.3.

Key dates

02Disclosure timeline

March 24, 2026 CVE published
March 24, 2026 Record updated