CVE-2026-56711
VLC media player versions 3.0.0 through 3.0.23 contain a memory-safety vulnerability reachable when processing crafted media. Exploitation requires user interaction and may result in application termination or code execution with the privileges of the VLC process.
- Published Sep 9, 2026
- CVSS 7.3 high
- 0.1% chance of exploitation in the next 30 days (EPSS)