CVE-2026-33150 | libfuse up to 3.18.1 FUSE File Parser fuse_uring_start use after free (GHSA-qxv7-xrc2-qmfx / EUVD-2026-13786)
A vulnerability classified as critical was found in libfuse up to 3.18.1. The impacted element is the function fuse_uring_start of the component FUSE File Parser. The manipulation results in use after free.
This vulnerability was named CVE-2026-33150. The attack needs to be approached locally. There is no available exploit.
Upgrading the affected component is advised.