Skip to content
AutodeskCVE-2026-16781

Autodesk 3ds Max: denial of service

Medium5.5CVE-2026-16781 · Published Aug 24, 2026 · updated Aug 28, 2026

A maliciously crafted SVG file, when parsed through Autodesk 3ds Max, can trigger an Uncontrolled Recursion vulnerability. A malicious actor may leverage this vulnerability to cause the application to terminate unexpectedly, resulting in a denial-of-service.

Autodesk advisory

Affected versions

PackageAffectedFixed in
3ds Max
Product
>= 2027.0.0, < 2027.2.02027.2.0
>= 2026.0.0, < 2026.3.42026.3.4
Details and references

More Autodesk advisories

All Autodesk
Advisory
Autodesk Shared Components: denial of service
Medium5.5Sep 2
Autodesk 3ds Max: out-of-bounds write
High7.8Aug 24
Autodesk 3ds Max: out-of-bounds write
High7.8Aug 24
Autodesk 3ds Max: memory corruption
High7.8Aug 24
Autodesk 3ds Max: out-of-bounds read
Medium5.3Aug 24
Autodesk Installer: insecure permissions
High7.8Aug 12

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.