Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A maliciously crafted RFA file, when converted to FormIt via “Convert RFA to FormIt” in Autodesk Revit, can force a NULL Pointer Dereference vulnerability. Successful exploitation may cause the application to crash, leading to a denial-of-service condition. | |
| Title | RFA File Parsing Vulnerability in Autodesk Revit | |
| First Time appeared |
Autodesk
Autodesk revit |
|
| Weaknesses | CWE-476 | |
| CPEs | cpe:2.3:a:autodesk:revit:2024.3.5:*:*:*:*:*:*:* cpe:2.3:a:autodesk:revit:2025.4.5:*:*:*:*:*:*:* cpe:2.3:a:autodesk:revit:2026.4.1:*:*:*:*:*:*:* cpe:2.3:a:autodesk:revit:2027.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Autodesk
Autodesk revit |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: autodesk
Published:
Updated: 2026-06-17T17:30:51.745Z
Reserved: 2026-01-21T14:43:31.726Z
Link: CVE-2026-1288
Updated: 2026-06-17T17:30:39.356Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-18T20:45:03Z