Skip to content

CVE lookup

CVE-2026-32316

Pruva has a verified reproduction for CVE-2026-32316: jq: integer overflow in jv_string_concat triggers heap buffer overflow on large strings. The canonical evidence record is REPRO-2026-00170.

REPRO

REPRO-2026-00170

Package

jq · github

Severity

HIGH

Status

published