CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-20777

unknowncovered by 1 sourcefirst seen 2026-09-02
Mark Bereza and Lilith Wyatt discovered that BioSig incorrectly handled certain crafted input files. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2026-22891, CVE-2026-20777)

CSIRTS triage

What
Improper handling of crafted input files allows denial of service or arbitrary code execution.
Who is affected
BioSig users processing untrusted input files.
Urgency
Unknown severity but arbitrary code execution capability requires prompt patching.
Action
Apply available security updates for CVE-2026-22891 and CVE-2026-20777.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-20777

Get an email if CVE-2026-20777 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2026-20777

CVE.org record

Embed the live status

CVE-2026-20777 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-20777 status](https://www.csirts.com/badge/CVE-2026-20777)](https://www.csirts.com/cve/CVE-2026-20777)