
CVE-2026-5479 In wolfSSL's EVP layer, the ChaCha20-Poly1305 AEAD decryption path in wolfSSL_EVP_CipherFinal (and related EVP cipher finalization functions) fails to verify the authen… https://www.cve.org/CVERecord?id=CVE-2026-5479
Post summary
The text discloses a missing authentication verification in wolfSSL's ChaCha20-Poly1305 decryption path, indicating a potential vulnerability without additional exploitation or patch details.


