In libslic3r/GCode/PostProcessor.cpp in Prusa PrusaSlicer through 2.6.1, a crafted 3mf project file can execute arbitrary code on a host where the project is sliced and G-code exported.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 08 May 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Execution of arbitrary code via malicious 3mf file in PrusaSlicer | |
| Weaknesses | CWE-78 |
Fri, 08 May 2026 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In libslic3r/GCode/PostProcessor.cpp in Prusa PrusaSlicer through 2.6.1, a crafted 3mf project file can execute arbitrary code on a host where the project is sliced and G-code exported. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-08T04:51:42.650Z
Reserved: 2023-11-05T00:00:00.000Z
Link: CVE-2023-47268
No data.
Status : Received
Published: 2026-05-08T06:16:08.667
Modified: 2026-05-08T06:16:08.667
Link: CVE-2023-47268
No data.
OpenCVE Enrichment
Updated: 2026-05-08T06:45:03Z
Weaknesses