Autodesk 3ds Max Use-After-Free Vulnerability Allowing Code Execution

Vulnerability

A use-after-free vulnerability has been identified in Autodesk 3ds Max 2026. When a maliciously crafted DWG file is parsed by the application, it can trigger this vulnerability. Exploitation of this issue can lead to application crashes, unauthorized access to sensitive data, or arbitrary code execution within the current process context.

Impact

Exploitation of this vulnerability can cause application crashes, unauthorized access to sensitive data, or allow arbitrary code execution in the context of the current process.

Remediation

Users are advised to update to Autodesk 3ds Max version 2026.3. The update can be obtained through Autodesk Access or the Accounts Portal.

Added: Nov 12, 2025, 6:35 PM
Updated: Nov 12, 2025, 6:35 PM

Vulnerability Rating

Custom Algorithm
spread
4.2
impact
7.5
exploitability
4.4
remediation
7.7
relevance
1.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.