THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-1289 (HIGH 7.8) — A maliciously crafted PDF file, when parsed through Autodesk Revit, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, disclose sensitive data, or execute arbitrary code in the context of the current process.

[NVD] CVE-2026-1289 (HIGH 7.8) — A maliciously crafted PDF file, when parsed through Autodesk Revit, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, disclose sensitive data, or execute arbitrary code in the context of the current process.

mednvdPublished 2026-08-06

CVE-2026-1289 CVSS: 7.8 HIGH Published: 2026-08-06T22:17:00.373

A maliciously crafted PDF file, when parsed through Autodesk Revit, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, disclose sensitive data, or execute arbitrary code in the context of the current process.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-1289