CVE-2026-1288
EUVD-2026-3774417.06.2026, 17:16
A maliciously crafted RFA file, when converted to FormIt via “Convert RFA to FormIt” in Autodesk Revit, can force a NULL Pointer Dereference vulnerability. Successful exploitation may cause the application to crash, leading to a denial-of-service condition.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| autodesk | revit | 2027.0.0 ≤ 𝑥 < 2027.1.0 | CNA |
| autodesk | revit | 2026.0.0 ≤ 𝑥 < 2026.4.1 | CNA |
| autodesk | revit | 2025.0.0 ≤ 𝑥 < 2025.4.5 | CNA |
| autodesk | revit | 2024.0.0 ≤ 𝑥 < 2024.3.5 | CNA |
Common Weakness Enumeration