Out-of-bounds read in Autodesk products - CVE-2026-16465
Published: July 29, 2026 / Updated: July 30, 2026
Autodesk AutoCAD
AutoCAD Architecture
AutoCAD Electrical
AutoCAD Mechanical
AutoCAD MEP
AutoCAD Plant 3D
Autodesk Civil 3D
Advance Steel
AutoCAD Map 3D
AutoCAD LT
DWG Trueview
Detailed vulnerability description
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to out-of-bounds read in the DWG and DXF file parser when parsing a crafted DWG or DXF file. A remote attacker can supply a specially crafted file to disclose sensitive information.
User interaction is required to open or parse the crafted file.