A vulnerability was found in Assimp up to 6.0.4. It has been rated as critical. This affects the function
glTFCommon::CopyValue in the library glTFCommon.h of the component 4×4 Matrix Parser. Performing a manipulation results in heap-based buffer overflow.
This vulnerability is cataloged as CVE-2026-10200. The attack must be initiated from a local position. Furthermore, there is an exploit available.
The project tagged the reported issue as bug.