CVE-2026-46598

For certain crafted inputs, a 'ed25519.PrivateKey' was created by casting malformed wire bytes, leading to a panic when used.

  • Published May 22, 2026
  • CVSS 5.3 medium
  • 0.5% chance of exploitation in the next 30 days (EPSS)

Affected software

In the news

CVE-2026-46598 at the National Vulnerability Database