ZeroHour
Vendor

OriginLab

0 mentions in 7 days · 2 in 30 days · 2 total · first seen · last

Timeline

ZDI-26-586: OriginLab Origin Viewer OGM File Parsing Memory Corruption Remote Code Execution Vulnerability

ZDI advisory ZDI-26-586 reports a memory corruption RCE (CVE-2026-19886, CVSS 7.8) in OriginLab Origin Viewer OGM file parsing, needing user interaction.

The Zero Day Initiative published advisory ZDI-26-586 describing a memory corruption vulnerability in OriginLab Origin Viewer's OGM file parsing. Exploitation allows remote code execution when a user opens a malicious file or visits a crafted page. ZDI rated the issue CVSS 7.8 and assigned CVE-2026-19886.

ZDI-26-585: OriginLab Origin Viewer OGWU File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

ZDI reported an out-of-bounds write in OriginLab Origin Viewer's OGWU parsing (CVE-2026-19885) that allows remote code execution via crafted files.

ZDI-26-585 details an out-of-bounds write vulnerability when OriginLab Origin Viewer parses OGWU files, leading to remote code execution. A successful attack requires the user to open a malicious file or visit a malicious page. The flaw carries a CVSS rating of 7.8 and is tracked as CVE-2026-19885. No in-the-wild exploitation is mentioned.

Related CVEs

  • Memory Corruption RCE in OriginLab Origin Viewer via Malicious OGM Files
    A memory corruption vulnerability (CWE-119) in OriginLab Origin Viewer allows remote attackers to execute arbitrary code in the context of the current process when a victim opens a malicious OGM file or visits a malicious web page. The flaw stems from improper validation of user-supplied data during OGM file parsing, which can corrupt memory and lead to full compromise of the affected workstation. Because the attack vector is local (AV:L) and requires user interaction (UI:R), exploitation depends on socially engineering a target into opening a weaponized file, a pattern well suited to spearphishing campaigns against research and academic users. Affected users are those running OriginLab Origin Viewer, a free desktop utility used to inspect Origin project and graph files common in scientific data analysis. No public proof of concept is known and the vulnerability is not listed in CISA's KEV catalog.
    · OriginLab Origin Viewerniche
  • OriginLab Origin Viewer OGWU File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability.
    OriginLab Origin Viewer OGWU File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OGWU files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated data structure. An attacker can leverage this…

Appears with

Entities are extracted by the model from each article. Watching an entity keeps it in this browser only (no account); the watchlist page and dashboard alerts use it.