CVE-2026-42854 | espressif arduino-esp32 up to 3.3.7 Multipart Form stack-based overflow (GHSA-8cmm-3887-r32j)
A vulnerability, which was classified as critical, has been found in espressif arduino-esp32 up to 3.3.7. Affected by this issue is some unknown functionality of the component Multipart Form Handler. Performing a manipulation results in stack-based buffer overflow.
This vulnerability is identified as CVE-2026-42854. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More