
CVE-2026-31814 Yamux is a stream multiplexer over reliable, ordered connections such as TCP/IP. From 0.13.0 to before 0.13.9, a specially crafted WindowUpdate can cause arithmetic o… https://www.cve.org/CVERecord?id=CVE-2026-31814
Post summary
The tweet announces CVE-2026-31814, describing an arithmetic overflow triggered by a crafted WindowUpdate in Yamux versions 0.13.0–0.13.8.
