A vulnerability described as problematic has been identified in bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0. The affected element is an unknown function. Such manipulation leads to out-of-bounds read.

This vulnerability is listed as CVE-2026-34941. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is recommended.