A vulnerability classified as problematic has been found in wolfSSL up to 5.9.1 . Affected by this vulnerability is an unknown functionality of the component EnvelopedData Handler . The manipulation leads to observable timing discrepancy. This vulnerability is uniquely identified as CVE-2026-6291 . The attack is possible to be carried out remotely. No exploit exists.