Medium severity5.3OSV Advisory· Published Jun 25, 2026· Updated Jun 27, 2026
CVE-2026-6092
CVE-2026-6092
Description
When HAVE_ENCRYPT_THEN_MAC is configured, the implementation could fall back to MAC-then-Encrypt rather than enforcing Encrypt-then-MAC.
Affected products
3Patches
Vulnerability mechanics
References
2- github.com/wolfSSL/wolfssl/pull/10167nvdIssue TrackingPatch
- www.wolfssl.com/docs/security-vulnerabilities/nvdVendor Advisory
News mentions
0No linked articles in our index yet.