{"id":"CVE-2026-92705","summary":"Aegisub executes arbitrary code through automatically loaded Automation scripts","details":"Aegisub is a cross-platform advanced subtitle editor. From 3.2.0 to 3.4.2, Aegisub automatically loads Automation scripts referenced by `Automation Scripts` metadata in `ASS` subtitle projects without asking whether the user trusts the scripts or their authors. An attacker can distribute a crafted `ASS` file together with a referenced malicious Automation script, and opening the `AS`  file executes arbitrary code with the privileges of the Aegisub process. From 3.4.0 to 3.4.2, inconsistent handling of embedded `NUL` characters between extension validation and filesystem operations additionally allows a crafted `ASS/Lua` polyglot to reference and execute itself as a single-file variant. The vulnerability is fixed in Aegisub 3.5.0.","aliases":["GHSA-67hq-5vgg-6f23"],"modified":"2026-10-11T07:04:55.737271036Z","published":"2026-10-09T20:37:58.321Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/92xxx/CVE-2026-92705.json","cna_assigner":"GitHub_M","cwe_ids":["CWE-158","CWE-829"]},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/92xxx/CVE-2026-92705.json"},{"type":"ADVISORY","url":"https://github.com/TypesettingTools/Aegisub/security/advisories/GHSA-67hq-5vgg-6f23"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-92705"},{"type":"FIX","url":"https://github.com/TypesettingTools/Aegisub/commit/0a3073d59f10432eeebea65018b02ef4d0a87fff"},{"type":"FIX","url":"https://github.com/TypesettingTools/Aegisub/commit/b5bf23979e7453f7b1cc8ffeb82b3cc2d2ca75e6"},{"type":"FIX","url":"https://github.com/TypesettingTools/Aegisub/commit/e4099055711cce327840870c050ce46e58f4aee0"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/typesettingtools/aegisub","events":[{"introduced":"3971eb0fb350482d20a84c5c21113d4789cdf77a"},{"fixed":"0a3073d59f10432eeebea65018b02ef4d0a87fff"},{"fixed":"b5bf23979e7453f7b1cc8ffeb82b3cc2d2ca75e6"},{"fixed":"e4099055711cce327840870c050ce46e58f4aee0"}],"database_specific":{"source":["AFFECTED_FIELD","REFERENCES"],"extracted_events":[{"introduced":"3.2.0"},{"fixed":"3.5.0"}]}}],"database_specific":{"vanir_signatures":[{"signature_type":"Function","signature_version":"v1","source":"https://github.com/typesettingtools/aegisub/commit/b5bf23979e7453f7b1cc8ffeb82b3cc2d2ca75e6","target":{"file":"src/ass_parser.cpp","function":"AssParser::ParseMetadataLine"},"deprecated":false,"digest":{"function_hash":"297913394838006257977939655020631017604","length":307},"id":"CVE-2026-92705-046e8384"},{"id":"CVE-2026-92705-0fecabfe","signature_type":"Line","signature_version":"v1","source":"https://github.com/typesettingtools/aegisub/commit/e4099055711cce327840870c050ce46e58f4aee0","target":{"file":"src/auto4_base.cpp"},"deprecated":false,"digest":{"threshold":0.9,"line_hashes":["65789750913398799151788185279564685439","68884008159766980214666549823642983774","254993420649616114518330891911074313810","307433222880683362335711524340597996174","98918420366876508166107003260019241242","46010356103349783772453659659927637799","119642786202988964063618964687057956596","17458192575685042237614099641978069505","174257633184558231884693897521835167592","109198071340953334066598780695537540059","46552602213065322648418228163534936855","164253810444980791087131157678433648065","113193187258704482572052540750338323187","99696356911038775612664779998608695722","308981881531990278370603105087549771893","229691140279273757150314856779021695315","109728789418729574683069561865140406650","201730756598213706034199045027916412122","21233391047798798959663333321633153767","244208011496462942269626731623725178736","273626675932461506956671659609149304775","217825504011586220086000180962176713262","196274551741093891346080470712100410526"]}},{"deprecated":false,"digest":{"function_hash":"63216833812505810010865651380835673510","length":907},"id":"CVE-2026-92705-3ce4c656","signature_type":"Function","signature_version":"v1","source":"https://github.com/typesettingtools/aegisub/commit/b5bf23979e7453f7b1cc8ffeb82b3cc2d2ca75e6","target":{"function":"AssParser::ParseExtradataLine","file":"src/ass_parser.cpp"}},{"signature_version":"v1","source":"https://github.com/typesettingtools/aegisub/commit/b5bf23979e7453f7b1cc8ffeb82b3cc2d2ca75e6","target":{"file":"src/ass_parser.h"},"deprecated":false,"digest":{"threshold":0.9,"line_hashes":["73254139070309691928000974497278780407","174580960835583491552409076963181674271","87620570954342429190275354490499875070","4772629093353042341274998811503759814"]},"id":"CVE-2026-92705-6769503b","signature_type":"Line"},{"target":{"function":"LocalScriptManager::Reload","file":"src/auto4_base.cpp"},"deprecated":false,"digest":{"function_hash":"4649642339399945969638527936849558461","length":1266},"id":"CVE-2026-92705-81962dc8","signature_type":"Function","signature_version":"v1","source":"https://github.com/typesettingtools/aegisub/commit/e4099055711cce327840870c050ce46e58f4aee0"},{"source":"https://github.com/typesettingtools/aegisub/commit/0a3073d59f10432eeebea65018b02ef4d0a87fff","target":{"file":"libaegisub/common/fs.cpp"},"deprecated":false,"digest":{"line_hashes":["245107269408514329255527771236002696493","222507216250350444858445990800306767889","30407424653601168592411274093541465097","25226756387606778410061978114165443504"],"threshold":0.9},"id":"CVE-2026-92705-8c1d02c0","signature_type":"Line","signature_version":"v1"},{"signature_version":"v1","source":"https://github.com/typesettingtools/aegisub/commit/b5bf23979e7453f7b1cc8ffeb82b3cc2d2ca75e6","target":{"file":"src/ass_parser.cpp"},"deprecated":false,"digest":{"line_hashes":["288938258967667064595355224828451900693","260877989083769923178206194352677530760","9058311769138493594901975359310282420","286108547194390020689216049794546461968","252717162103636501964169537100134609455","257819223173895781789464428469321702049","115661704975933341436691642526920287968","126201674277073770368662050760103450236","308590410053193839474346113715067986609","60889040486457857231259008734434757095","215952827115456940736404857127164387528","6326998583820879045639479005394347730","288556989405289407173129226219137342848","275293298390880800006746420046325677340","24064349552569742427096307467014113577"],"threshold":0.9},"id":"CVE-2026-92705-98bb81d0","signature_type":"Line"},{"id":"CVE-2026-92705-a813be53","signature_type":"Function","signature_version":"v1","source":"https://github.com/typesettingtools/aegisub/commit/0a3073d59f10432eeebea65018b02ef4d0a87fff","target":{"function":"HasExtension","file":"libaegisub/common/fs.cpp"},"deprecated":false,"digest":{"function_hash":"189384967113498168673372983353482426497","length":287}}],"vanir_signatures_modified":"2026-10-11T07:04:55Z","source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-92705.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}