Skip to content

CVE-2026-6678

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
June 26, 2026
Last Seen
June 26, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

CVE-2026-6678 is an integer underflow vulnerability in the wc_PKCS7_DecryptOri function, affecting systems that process PKCS#7 messages. An unauthenticated attacker can exploit this vulnerability by sending crafted messages with malformed Other Recipient Info, leading to potential disclosure of sens...

Public Exploits

Checking GitHub for proof-of-concept code…