
CVE-2026-29795 stellar-xdr is a library and CLI containing types and functionality for working with Stellar XDR. Prior to version 25.0.1, StringM::from_str does not validate that th… https://www.cve.org/CVERecord?id=CVE-2026-29795
Post summary
The post reports a missing validation flaw in stellar-xdr’s StringM::from_str before version 25.0.1, with the issue corrected in that release.

