CVE-2026-9143EPSS p7.8%
CVE-2026-9143CVE-2026-9143
ni / instrumentstudio
Description
There is an incorrect conversion between numeric types vulnerability in NI grpc-device due to missing range checks in CodeGen. This may silently discard high bits if a size value exceeded the target type's range. This affects NI grpc-device 2.17.0 and prior versions.
Scoring
| CVSS | 3.7 () |
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N |
| EPSS | 0.18% probability of exploitation · percentile 7.8% · 2026-08-03T12:00:16Z |
| Last modified | 2026-06-25 |