Cyera disclosed a heap out-of-bounds read issue that exists in Ollama (before 0.17.1). This can be exploited to access sensitive information stored on the heap, including prompts, messages, and environment variables, including API keys, tokens, and secrets despite being written in Go because of the use of the “unsafe” package that allows for low-level memory operations.