
CVE-2026-32829 lz4_flex is a pure Rust implementation of LZ4 compression/decompression. In versions 0.11.5 and below, and 0.12.0, decompressing invalid LZ4 data can leak sensitive … https://www.cve.org/CVERecord?id=CVE-2026-32829
Post summary
The text announces the existence of CVE-2026-32829, describing how invalid LZ4 data processing can lead to sensitive data leakage, but does not provide PoC, exploit, patch, or active exploitation details.
