Security Advisory

CVE-2026-85698

5.5
MEDIUM

Vulnerability Description

Turso through 0.8.0-pre.8 contains an out-of-bounds read vulnerability in the table-leaf page reader that uses an attacker-controlled cell-count field without bounds validation. Attackers can craft a malicious database file with a modified cell count value to trigger an index-out-of-bounds panic when querying, causing denial of service in any application that opens untrusted database files.
Published Date September 4, 2026
Official Source NIST NVD Advisory