Vulnerability Description
MathWorks Simulink before R2026b, when showing a crafted .slx file, can have blocks that are never visible in the Simulink Editor but will cause code execution.
CVSS Score
LOW
Related Weaknesses (CWE)
References
- https://alexanderboll.dev/disclosures/simulink-vulnerability-concealed-blocks/
- https://www.mathworks.com/help/simulink/release-notes.html#mw_81eb54b6-4dfa-42c1
- https://www.mathworks.com/products/simulink.html
FAQ
What is CVE-2026-105043?
CVE-2026-105043 is a vulnerability with a CVSS score of 3.6 (LOW). MathWorks Simulink before R2026b, when showing a crafted .slx file, can have blocks that are never visible in the Simulink Editor but will cause code execution.
How severe is CVE-2026-105043?
CVE-2026-105043 has been rated LOW with a CVSS base score of 3.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-105043?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.