CVE-2026-4682

Severity CVSS v4.0:
HIGH
Type:
CWE-121 Stack-based Buffer Overflow
Publication date:
15/04/2026
Last modified:
15/04/2026

Description

Certain HP DeskJet All in One devices<br /> may be vulnerable to remote code execution caused by a buffer overflow when<br /> specially crafted Web Services for Devices (WSD) scan requests are improperly<br /> validated and handled by the MFP.<br /> <br /> <br /> <br /> WSD<br /> Scan is a Microsoft Windows–based network scanning protocol that allows a PC to<br /> discover scanners (and MFPs) on a network and send scan jobs to them without<br /> requiring vendor specific drivers or utilities.

References to Advisories, Solutions, and Tools