
CVE-2026-34582 Botan is a C++ cryptography library. Prior to version 3.11.1, the TLS 1.3 implementation allowed ApplicationData records to be processed prior to the Finished message… https://www.cve.org/CVERecord?id=CVE-2026-34582
Post summary
The CVE-2026-34582 flaw in Botan's TLS 1.3 implementation permits early processing of ApplicationData before the Finished message, and it is fixed as of version 3.11.1.

