CVE & Vulnerabilities · August 26, 2026
A newly disclosed flaw in the libwebsockets 4.5.0 library allows an out-of-bounds write in its CBOR recording function, reachable by a remote attacker. Public exploit code for the bug, tracked as CVE-2026-78161, is already circulating, raising the urgency for affected projects to update. A patch is available and should be applied promptly.
// source: nvd.nist.gov ↗