OTP 27.3.4.14 is a patch release for Erlang/OTP 27 addressing multiple security vulnerabilities and bug fixes across six applications. Security fixes include five CVEs: an SFTP path-traversal oracle (CVE-2026-53422), an SFTP infinite-loop DoS (CVE-2026-54886), a DTLS cookie forging DoS (CVE-2026-54887), a TLS MITM injection during handshake (CVE-2026-54891), a TLS PSK parameter mismatch (CVE-2026-55952), and a DTLS race-condition DoS (CVE-2026-55950). Additional fixes cover an erts qsort undefined behavior causing BEAM crashes on large map updates, an ETS delete race condition, AArch64 JIT code generation issues, and a crypto API improvement for unsupported EdDH/EdDSA operations. A legacy SHA-1 workaround for old OpenSSH 7.x clients has also been removed.