A vulnerability was found in wolfSSL up to 5.9.1 . It has been declared as problematic . Affected is an unknown function of the component EnvelopedData Handler . Such manipulation leads to out-of-bounds read. This vulnerability is listed as CVE-2026-6094 . The attack may be performed from remote. There is no available exploit.