
CVE-2026-23749 Golioth Firmware SDK version 0.19.1 prior to 0.22.0, fixed in commit 0e788217, contain an out-of-bounds read due to improper null termination of a blockwise transfer … https://www.cve.org/CVERecord?id=CVE-2026-23749
Post summary
CVE-2026-23749 is an out‑of‑bounds read vulnerability in Golioth Firmware SDK, fixed in commit 0e788217; no PoC, exploit code, or active exploitation is reported.
