A vulnerability described as critical has been identified in schreibfaul1 ESP32-audioI2S 3.4.5. The affected element is the function htmlToUTF8 of the file src/Audio.cpp. Such manipulation leads to heap-based buffer overflow.

This vulnerability is documented as CVE-2026-51270. The attack can be executed remotely. There is not any exploit available.