A vulnerability was found in wolfSSL up to 5.9.1. It has been declared as problematic. Affected is an unknown function of the component EnvelopedData Handler. Such manipulation leads to out-of-bounds read.

This vulnerability is listed as CVE-2026-6094. The attack may be performed from remote. There is no available exploit.