A vulnerability described as critical has been identified in MZ Automation libiec61850 up to 1.6.1. This vulnerability affects unknown code of the component GOOSE payload parser. Executing a manipulation can lead to out-of-bounds read.
This vulnerability is registered as CVE-2026-66364. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.