<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – TLS (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/tls.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/tls-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – TLS (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:27 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-35563 – It was identified that the LDAP client implementation in version 2.1.7 does not ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35563</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35563</guid>
    <pubDate>Mon, 01 Jun 2026 08:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35563</strong></p>
  <p>It was identified that the LDAP client implementation in version 2.1.7 does not verify if the server certificate matches the intended LDAP  hostname. While the underlying code validates the certificate chain  against a trusted authority, the absence of endpoint identification  allows a valid certificate issued for an entirely unrelated host to be  improperly accepted. This oversight leaves the co…</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-297</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35563">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46579 – A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46579</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46579</guid>
    <pubDate>Fri, 29 May 2026 11:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46579</strong></p>
  <p>A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminationPolicy` set to Allow, the HTTP frontend does not remove `X-SSL-Client-*` headers from incoming requests. This allows an unauthenticated attacker to send plain HTTP requests with crafted `X-SSL-Client-*` headers. As a result, backends relying on these headers for mutual TLS (Transport Layer Security) authentication…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46579">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46835 – Vulnerability in the Net Service component of Oracle Database Server.  Supported...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46835</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46835</guid>
    <pubDate>Thu, 28 May 2026 21:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46835</strong></p>
  <p>Vulnerability in the Net Service component of Oracle Database Server.  Supported versions that are affected are 23.4.0-23.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via TLS to compromise Net Service.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Net Servi…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46835">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46834 – Vulnerability in the Net Service component of Oracle Database Server.  Supported...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46834</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46834</guid>
    <pubDate>Thu, 28 May 2026 21:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46834</strong></p>
  <p>Vulnerability in the Net Service component of Oracle Database Server.  Supported versions that are affected are 23.4.0-23.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via TLS to compromise Net Service.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Net Servi…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46834">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-46833 – Vulnerability in the Net Service component of Oracle Database Server.  Supported...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46833</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46833</guid>
    <pubDate>Thu, 28 May 2026 21:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-46833</strong></p>
  <p>Vulnerability in the Net Service component of Oracle Database Server.  Supported versions that are affected are 23.4.0-23.26.2. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Net Service.  While the vulnerability is in Net Service, attacks may significantly impact additional products (scope change).  Successful attacks of this vulnerab…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46833">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32847 – DeepCode through commit c991dc2 contains a path traversal vulnerability in the S...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32847</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32847</guid>
    <pubDate>Thu, 28 May 2026 20:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32847</strong></p>
  <p>DeepCode through commit c991dc2 contains a path traversal vulnerability in the SPA catch-all route in new_ui/backend/main.py that allows unauthenticated attackers to read arbitrary files by supplying percent-encoded path segments to the GET /{full_path:path} endpoint. Attackers can bypass Starlette's path normalization by encoding slashes as %2F and dots as %2E%2E, causing the joined path to trav…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32847">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42790 – Improper Certificate Validation vulnerability in Erlang OTP public_key (pubkey_c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42790</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42790</guid>
    <pubDate>Wed, 27 May 2026 17:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42790</strong></p>
  <p>Improper Certificate Validation vulnerability in Erlang OTP public_key (pubkey_cert and public_key modules) allows a DNS nameConstraints bypass via subject CommonName fallback in TLS hostname verification.  Two flaws combine to allow a subordinate CA whose DNS nameConstraints are restricted (e.g. permitted;DNS:allowed.example.com) to issue a leaf certificate that an OTP TLS client accepts as a va…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42790">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42789 – Improper Following of a Certificate's Chain of Trust vulnerability in Erlang OTP...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42789</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42789</guid>
    <pubDate>Wed, 27 May 2026 14:16:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42789</strong></p>
  <p>Improper Following of a Certificate's Chain of Trust vulnerability in Erlang OTP public_key (pubkey_cert module) allows a non-CA certificate to be accepted as an intermediate issuer, enabling certificate chain forgery.  In lib/public_key/src/pubkey_cert.erl, pubkey_cert:validate_extensions/7 contains two flaws that together allow a certificate with basicConstraints cA:false and no keyUsage extens…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42789">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45574 – epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrast...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45574</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45574</guid>
    <pubDate>Tue, 26 May 2026 22:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45574</strong></p>
  <p>epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. Prior to 1.2.2, an attacker on the network path between the ePA service and the Konnektor can present any TLS certificate (self-signed, expired, wrong CN) and intercept all SOAP traffic. This includes patient identifiers (KVNR), SMC-B card operations (authentication, signing), document content, and credential…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45574">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45575 – epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrast...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45575</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45575</guid>
    <pubDate>Tue, 26 May 2026 21:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45575</strong></p>
  <p>epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. Prior to 1.2.2, an attacker who can MITM the TLS connection between the client and the IDP (within the TI network) can substitute a forged discovery document. The forged document redirects uri_puk_idp_enc and uri_puk_idp_sig to attacker-controlled URLs. The client then encrypts the SMC-B-signed challenge respo…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45575">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8855 – IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8855</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8855</guid>
    <pubDate>Tue, 26 May 2026 18:16:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8855</strong></p>
  <p>IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial of service in configurations with TLS mutual authentication (client authentication).</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8855">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-48697 – FastNetMon Community Edition through 1.2.9 does not verify TLS certificates on o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-48697</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-48697</guid>
    <pubDate>Tue, 26 May 2026 17:16:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-48697</strong></p>
  <p>FastNetMon Community Edition through 1.2.9 does not verify TLS certificates on outbound HTTPS connections. The execute_web_request_secure() function in src/fast_library.cpp creates a boost::asio::ssl::context with tls_client mode and calls set_default_verify_paths() to load CA certificates, but never calls set_verify_mode(boost::asio::ssl::verify_peer). Without this call, OpenSSL performs the TLS…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48697">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-47071 – Uncontrolled Resource Consumption vulnerability in benoitc hackney allows Floodi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47071</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47071</guid>
    <pubDate>Mon, 25 May 2026 15:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-47071</strong></p>
  <p>Uncontrolled Resource Consumption vulnerability in benoitc hackney allows Flooding. The SOCKS5 transport in src/hackney_socks5.erl correctly applies the caller-supplied timeout to the SOCKS5 negotiation phase, but then upgrades the connection to TLS using the two-argument form ssl:connect/2, which defaults to an infinite timeout. The Timeout value is in scope at the call site but is not forwarded…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47071">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-9133 – Active debug code exists in the ARN resolver of amazon-mq rabbitmq-aws before ve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9133</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9133</guid>
    <pubDate>Wed, 20 May 2026 20:16:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-9133</strong></p>
  <p>Active debug code exists in the ARN resolver of amazon-mq rabbitmq-aws before version 0.2.1. A debug ARN scheme (arn:aws-debug:file) accepted by the PUT /api/aws/arn/validate validation endpoint might allow remote authenticated users to perform arbitrary file reads on any file accessible to the RabbitMQ process.     To remediate this issue, customers should upgrade to version 0.2.1 of rabbitmq-aw…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-489</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9133">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-23998 – Fleet is open source device management software. Prior to version 4.81.0, a vuln...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23998</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23998</guid>
    <pubDate>Thu, 14 May 2026 19:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-23998</strong></p>
  <p>Fleet is open source device management software. Prior to version 4.81.0, a vulnerability in Fleet’s Windows MDM management endpoint could allow requests to be processed without proper client certificate validation. In certain circumstances, this could allow an attacker to impersonate an enrolled Windows device and retrieve sensitive configuration data. Fleet’s Windows MDM management endpoint rel…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23998">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44304 – Lemur manages TLS certificate creation. Prior to 1.9.0, Lemur's LDAP authenticat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44304</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44304</guid>
    <pubDate>Tue, 12 May 2026 22:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44304</strong></p>
  <p>Lemur manages TLS certificate creation. Prior to 1.9.0, Lemur's LDAP authentication module (lemur/auth/ldap.py) constructs LDAP search filters using unsanitized user input via Python string interpolation. An authenticated LDAP user can inject LDAP filter metacharacters through the username field to manipulate group membership queries and escalate their privileges to administrator. This vulnerabil…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-90</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44304">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44296 – Deskflow is a keyboard and mouse sharing app. Prior to 1.26.0.167, a remote, una...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44296</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44296</guid>
    <pubDate>Tue, 12 May 2026 22:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44296</strong></p>
  <p>Deskflow is a keyboard and mouse sharing app. Prior to 1.26.0.167, a remote, unauthenticated denial of service (DoS) vulnerability affects Deskflow servers running with TLS enabled (the default). When any TCP peer connects to the listening port and its first bytes do not parse as a valid TLS ClientHello, SecureSocket::secureAccept enters its fatal-error branch and calls Arch::sleep(1) (a blocking…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44296">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-45185 – Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable u...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45185</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45185</guid>
    <pubDate>Tue, 12 May 2026 20:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-45185</strong></p>
  <p>Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbit…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45185">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45001 – OpenClaw before 2026.4.20 contains a guard bypass vulnerability in the agent-fac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45001</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45001</guid>
    <pubDate>Mon, 11 May 2026 18:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45001</strong></p>
  <p>OpenClaw before 2026.4.20 contains a guard bypass vulnerability in the agent-facing gateway config.patch and config.apply endpoints that fails to protect operator-trusted settings including sandbox policy, plugin enablement, gateway auth/TLS, hook routing, MCP server configuration, SSRF policy, and filesystem hardening. A prompt-injected model with access to the owner-only gateway tool can persis…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45001">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42246 – Net::IMAP implements Internet Message Access Protocol (IMAP) client functionalit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42246</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42246</guid>
    <pubDate>Sat, 09 May 2026 20:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42246</strong></p>
  <p>Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4, a man-in-the-middle attacker can cause Net::IMAP#starttls to return "successfully", without starting TLS. This issue has been patched in versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-392</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42246">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7776 – Boundary Community Edition and Boundary Enterprise (“Boundary”) workers are vuln...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7776</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7776</guid>
    <pubDate>Mon, 04 May 2026 22:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7776</strong></p>
  <p>Boundary Community Edition and Boundary Enterprise (“Boundary”) workers are vulnerable to a denial-of-service condition during node enrollment TLS handshakes. An attacker with network access to the worker authentication listener may open a connection and delay or withhold the client certificate during the TLS handshake, causing worker connection handling to block. This may prevent legitimate work…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7776">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0073 – In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0073</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0073</guid>
    <pubDate>Mon, 04 May 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0073</strong></p>
  <p>In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution as the shell user with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-303</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0073">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5402 – TLS protocol dissector heap overflow in Wireshark 4.6.0 to 4.6.4 allows denial o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5402</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5402</guid>
    <pubDate>Thu, 30 Apr 2026 07:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5402</strong></p>
  <p>TLS protocol dissector heap overflow in Wireshark 4.6.0 to 4.6.4 allows denial of service and possible code execution</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5402">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-25874 – LeRobot through 0.5.1 contains an unsafe deserialization vulnerability in the as...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25874</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25874</guid>
    <pubDate>Thu, 23 Apr 2026 20:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-25874</strong></p>
  <p>LeRobot through 0.5.1 contains an unsafe deserialization vulnerability in the async inference pipeline where pickle.loads() is used to deserialize data received over unauthenticated gRPC channels without TLS in the policy server and robot client components. An unauthenticated network-reachable attacker can achieve arbitrary code execution on the server or client by sending a crafted pickle payloa…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25874">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31533 – In the Linux kernel, the following vulnerability has been resolved:

net/tls: fi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31533</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31533</guid>
    <pubDate>Thu, 23 Apr 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31533</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption  The -EBUSY handling in tls_do_encryption(), introduced by commit 859054147318 ("net: tls: handle backlogging of crypto requests"), has a use-after-free due to double cleanup of encrypt_pending and the scatterlist entry.  When crypto_aead_encrypt() returns -EB…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31533">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32105 – xrdp is an open source RDP server. In versions through 0.10.5, xrdp does not imp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32105</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32105</guid>
    <pubDate>Fri, 17 Apr 2026 20:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32105</strong></p>
  <p>xrdp is an open source RDP server. In versions through 0.10.5, xrdp does not implement verification for the Message Authentication Code (MAC) signature of encrypted RDP packets when using the "Classic RDP Security" layer. While the sender correctly generates signatures, the receiving logic lacks the necessary implementation to validate the 8-byte integrity signature, causing it to be silently ign…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-354</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32105">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41113 – sagredo qmail before 2026.04.07 allows tls_quit remote code execution because of...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41113</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41113</guid>
    <pubDate>Thu, 16 Apr 2026 22:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41113</strong></p>
  <p>sagredo qmail before 2026.04.07 allows tls_quit remote code execution because of popen in notlshosts_auto in qmail-remote.c.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41113">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-6264 – A critical vulnerability in the Talend JobServer and Talend Runtime allows unaut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6264</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6264</guid>
    <pubDate>Tue, 14 Apr 2026 03:16:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-6264</strong></p>
  <p>A critical vulnerability in the Talend JobServer and Talend Runtime allows unauthenticated remote code execution via the JMX monitoring port. The attack vector is the JMX monitoring port of the Talend JobServer. The vulnerability can be mitigated for the Talend JobServer by requiring TLS client authentication for the monitoring port; however, the patch must be applied for full mitigation. For Tal…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6264">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34478 – Apache Log4j Core's  Rfc5424Layout https://logging.apache.org/log4j/2.x/manual/l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34478</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34478</guid>
    <pubDate>Fri, 10 Apr 2026 16:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34478</strong></p>
  <p>Apache Log4j Core's  Rfc5424Layout https://logging.apache.org/log4j/2.x/manual/layouts.html#RFC5424Layout , in versions 2.21.0 through 2.25.3, is vulnerable to log injection via CRLF sequences due to undocumented renames of security-relevant configuration attributes.  Two distinct issues affect users of stream-based syslog services who configure Rfc5424Layout directly:    *  The newLineEscape att…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-117</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34478">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39304 – Denial of Service via Out of Memory vulnerability in Apache ActiveMQ Client, Apa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39304</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39304</guid>
    <pubDate>Fri, 10 Apr 2026 11:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39304</strong></p>
  <p>Denial of Service via Out of Memory vulnerability in Apache ActiveMQ Client, Apache ActiveMQ Broker, Apache ActiveMQ.  ActiveMQ NIO SSL transports do not correctly handle TLSv1.3 handshake KeyUpdates triggered by clients. This makes it possible for a client to rapidly trigger updates which causes the broker to exhaust all its memory in the SSL engine leading to DoS.  Note: TLS versions before TLS…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39304">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5501 – wolfSSL_X509_verify_cert in the OpenSSL compatibility layer accepts a certificat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5501</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5501</guid>
    <pubDate>Fri, 10 Apr 2026 04:17:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5501</strong></p>
  <p>wolfSSL_X509_verify_cert in the OpenSSL compatibility layer accepts a certificate chain in which the leaf's signature is not checked, if the attacker supplies an untrusted intermediate with Basic Constraints `CA:FALSE` that is legitimately signed by a trusted root. An attacker who obtains any leaf certificate from a trusted CA (e.g. a free DV cert from Let's Encrypt) can forge a certificate for a…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5501">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5446 – In wolfSSL, ARIA-GCM cipher suites used in TLS 1.2 and DTLS 1.2 reuse an identic...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5446</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5446</guid>
    <pubDate>Thu, 09 Apr 2026 21:16:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5446</strong></p>
  <p>In wolfSSL, ARIA-GCM cipher suites used in TLS 1.2 and DTLS 1.2 reuse an identical 12-byte GCM nonce for every application-data record. Because wc_AriaEncrypt is stateless and passes the caller-supplied IV verbatim to the MagicCrypto SDK with no internal counter, and because the explicit IV is zero-initialized at session setup and never incremented in non-FIPS builds. This vulnerability affects w…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-323</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5446">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-1584 – A flaw was found in gnutls. A remote, unauthenticated attacker can exploit this ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1584</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1584</guid>
    <pubDate>Thu, 09 Apr 2026 18:16:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-1584</strong></p>
  <p>A flaw was found in gnutls. A remote, unauthenticated attacker can exploit this vulnerability by sending a specially crafted ClientHello message with an invalid Pre-Shared Key (PSK) binder value during the TLS handshake. This can lead to a NULL pointer dereference, causing the server to crash and resulting in a remote Denial of Service (DoS) condition.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1584">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34179 – In Canonical LXD versions 4.12 through 6.7, the doCertificateUpdate function in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34179</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34179</guid>
    <pubDate>Thu, 09 Apr 2026 10:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34179</strong></p>
  <p>In Canonical LXD versions 4.12 through 6.7, the doCertificateUpdate function in lxd/certificates.go does not validate the Type field when handling PUT/PATCH requests to /1.0/certificates/{fingerprint} for restricted TLS certificate users, allowing a remote authenticated attacker to escalate privileges to cluster admin.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-915</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34179">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39863 – Kamailio is an open source implementation of a SIP Signaling Server. Prior to 6...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39863</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39863</guid>
    <pubDate>Wed, 08 Apr 2026 20:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39863</strong></p>
  <p>Kamailio is an open source implementation of a SIP Signaling Server. Prior to 6.1.1, 6.0.6, and 5.8.8, an out-of-bounds access in the core of Kamailio (formerly OpenSER and SER) allows remote attackers to cause a denial of service (process crash) via a specially crafted data packet sent over TCP. The issue impacts Kamailio instances having TCP or TLS listeners. This vulnerability is fixed in 5.1.…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39863">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32283 – If one side of the TLS connection sends multiple key update messages post-handsh...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32283</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32283</guid>
    <pubDate>Wed, 08 Apr 2026 02:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32283</strong></p>
  <p>If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32283">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32280 – During chain building, the amount of work that is done is not correctly limited ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32280</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32280</guid>
    <pubDate>Wed, 08 Apr 2026 02:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32280</strong></p>
  <p>During chain building, the amount of work that is done is not correctly limited when a large number of intermediate certificates are passed in VerifyOptions.Intermediates, which can lead to a denial of service. This affects both direct users of crypto/x509 and users of crypto/tls.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32280">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34582 – Botan is a C++ cryptography library. Prior to version 3.11.1, the TLS 1.3 implem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34582</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34582</guid>
    <pubDate>Tue, 07 Apr 2026 22:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34582</strong></p>
  <p>Botan is a C++ cryptography library. Prior to version 3.11.1, the TLS 1.3 implementation allowed ApplicationData records to be processed prior to the Finished message being received. A server which is attempting to enforce client authentication via certificates can by bypassed by a client which entirely omits Certificate, CertificateVerify, and the Finished message and instead sends application d…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-841</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34582">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-28386 – Issue summary: Applications using AES-CFB128 encryption or decryption on
systems...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28386</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28386</guid>
    <pubDate>Tue, 07 Apr 2026 22:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-28386</strong></p>
  <p>Issue summary: Applications using AES-CFB128 encryption or decryption on systems with AVX-512 and VAES support can trigger an out-of-bounds read of up to 15 bytes when processing partial cipher blocks.  Impact summary: This out-of-bounds read may trigger a crash which leads to Denial of Service for an application if the input buffer ends at a memory page boundary and the following page is unmappe…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28386">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39312 – SoftEtherVPN is a an open-source cross-platform multi-protocol VPN Program. In 5...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39312</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39312</guid>
    <pubDate>Tue, 07 Apr 2026 17:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39312</strong></p>
  <p>SoftEtherVPN is a an open-source cross-platform multi-protocol VPN Program. In 5.2.5188 and earlier, a pre-authentication denial-of-service vulnerability exists in SoftEther VPN Developer Edition 5.2.5188 (and likely earlier versions of Developer Edition). An unauthenticated remote attacker can crash the vpnserver process by sending a single malformed EAP-TLS packet over raw L2TP (UDP/1701), term…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-789</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39312">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32144 – Improper Certificate Validation vulnerability in Erlang OTP public_key (pubkey_o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32144</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32144</guid>
    <pubDate>Tue, 07 Apr 2026 13:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32144</strong></p>
  <p>Improper Certificate Validation vulnerability in Erlang OTP public_key (pubkey_ocsp module) allows OCSP designated-responder authorization bypass via missing signature verification.  The OCSP response validation in public_key:pkix_ocsp_validate/5 does not verify that a CA-designated responder certificate was cryptographically signed by the issuing CA. Instead, it only checks that the responder ce…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32144">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33752 – curl_cffi is the a Python binding for curl. Prior to 0.15.0, curl_cffi does not ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33752</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33752</guid>
    <pubDate>Mon, 06 Apr 2026 16:16:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33752</strong></p>
  <p>curl_cffi is the a Python binding for curl. Prior to 0.15.0, curl_cffi does not restrict requests to internal IP ranges, and follows redirects automatically via the underlying libcurl. Because of this, an attacker-controlled URL can redirect requests to internal services such as cloud metadata endpoints. In addition, curl_cffi’s TLS impersonation feature can make these requests appear as legitima…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33752">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-4986 – Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-servic...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-4986</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-4986</guid>
    <pubDate>Thu, 02 Apr 2026 22:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-4986</strong></p>
  <p>Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-4986">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-14033 – Hirschmann EagleSDV firmware prior to 05.4.02 contains a denial-of-service vulne...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-14033</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-14033</guid>
    <pubDate>Thu, 02 Apr 2026 21:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-14033</strong></p>
  <p>Hirschmann EagleSDV firmware prior to 05.4.02 contains a denial-of-service vulnerability in TLS session establishment. Attackers can crash the device during TLS handshake by exploiting protocol downgrades to TLS 1.0 or TLS 1.1, interrupting service availability.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-14033">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34877 – An issue was discovered in Mbed TLS versions from 2.19.0 up to 3.6.5, Mbed TLS 4...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34877</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34877</guid>
    <pubDate>Thu, 02 Apr 2026 17:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34877</strong></p>
  <p>An issue was discovered in Mbed TLS versions from 2.19.0 up to 3.6.5, Mbed TLS 4.0.0. Insufficient protection of serialized SSL context or session structures allows an attacker who can modify the serialized structures to induce memory corruption, leading to arbitrary code execution. This is caused by Incorrect Use of Privileged APIs.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-250</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34877">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34876 – An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds read vuln...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34876</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34876</guid>
    <pubDate>Thu, 02 Apr 2026 16:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34876</strong></p>
  <p>An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds read vulnerability in mbedtls_ccm_finish() in library/ccm.c allows attackers to obtain adjacent CCM context data via invocation of the multipart CCM API with an oversized tag_len parameter. This is caused by missing validation of the tag_len parameter against the size of the internal 16-byte authentication buffer. The issue af…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34876">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31931 – Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before vers...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31931</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31931</guid>
    <pubDate>Thu, 02 Apr 2026 14:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31931</strong></p>
  <p>Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, use of the "tls.alpn" rule keyword can cause Suricata to crash with a NULL dereference. This issue has been patched in version 8.0.4.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31931">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-23414 – In the Linux kernel, the following vulnerability has been resolved:

tls: Purge ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23414</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23414</guid>
    <pubDate>Thu, 02 Apr 2026 12:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-23414</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  tls: Purge async_hold in tls_decrypt_async_wait()  The async_hold queue pins encrypted input skbs while the AEAD engine references their scatterlist data. Once tls_decrypt_async_wait() returns, every AEAD operation has completed and the engine no longer references those skbs, so they can be freed unconditionally.  A subsequent p…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23414">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5244 – A vulnerability has been found in Cesanta Mongoose up to 7.20. This affects the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5244</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5244</guid>
    <pubDate>Thu, 02 Apr 2026 08:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5244</strong></p>
  <p>A vulnerability has been found in Cesanta Mongoose up to 7.20. This affects the function mg_tls_recv_cert of the file mongoose.c of the component TLS 1.3 Handler. Such manipulation of the argument pubkey leads to heap-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 7.21 mitigates this issue. The name of…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5244">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34873 – An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation ca...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34873</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34873</guid>
    <pubDate>Wed, 01 Apr 2026 21:17:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34873</strong></p>
  <p>An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34873">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34872 – An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Cry...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34872</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34872</guid>
    <pubDate>Wed, 01 Apr 2026 20:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34872</strong></p>
  <p>An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can force the shared secret into a small set of values (lack of contributory behavior). This is a problem for protocols that depend on contributory behavior (which is not the c…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34872">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34874 – An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34874</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34874</guid>
    <pubDate>Wed, 01 Apr 2026 19:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34874</strong></p>
  <p>An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34874">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25835 – Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Ra...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25835</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25835</guid>
    <pubDate>Wed, 01 Apr 2026 19:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25835</strong></p>
  <p>Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG).</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-335</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25835">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25833 – Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x5...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25833</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25833</guid>
    <pubDate>Wed, 01 Apr 2026 19:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25833</strong></p>
  <p>Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x509_inet_pton_ipv6() function</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25833">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34875 – An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1.0.0. A buf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34875</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34875</guid>
    <pubDate>Wed, 01 Apr 2026 18:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34875</strong></p>
  <p>An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1.0.0. A buffer overflow can occur in public key export for FFDH keys.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34875">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-4370 – A vulnerability was identified in Juju from version 3.2.0 until 3.6.19 and from ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4370</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4370</guid>
    <pubDate>Wed, 01 Apr 2026 09:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-4370</strong></p>
  <p>A vulnerability was identified in Juju from version 3.2.0 until 3.6.19 and from version 4.0 until 4.0.4, where the internal Dqlite database cluster fails to perform proper TLS client and server authentication. Specifically, the Juju controller's database endpoint does not validate client certificates when a new node attempts to join the cluster. An unauthenticated attacker with network reachabili…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4370">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33697 – Cocos AI is a confidential computing system for AI. The current implementation o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33697</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33697</guid>
    <pubDate>Fri, 27 Mar 2026 00:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33697</strong></p>
  <p>Cocos AI is a confidential computing system for AI. The current implementation of attested TLS (aTLS) in CoCoS is vulnerable to a relay attack affecting all versions from v0.4.0 through v0.8.2. This vulnerability is present in both the AMD SEV-SNP and Intel TDX deployment targets supported by CoCoS. In the affected design, an attacker may be able to extract the ephemeral TLS private key used duri…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-322</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33697">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-20004 – A vulnerability in the TLS library of Cisco IOS XE Software could allow an unaut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20004</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20004</guid>
    <pubDate>Wed, 25 Mar 2026 16:16:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-20004</strong></p>
  <p>A vulnerability in the TLS library of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to exhaust the available memory of an affected device.  This vulnerability is due to improper management of memory resources during TLS connection setup. An attacker could exploit this vulnerability by repeatedly triggering the conditions that cause the memory increase. This could be do…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-771</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20004">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33307 – Mod_gnutls is a TLS module for Apache HTTPD based on GnuTLS. In versions prior t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33307</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33307</guid>
    <pubDate>Tue, 24 Mar 2026 02:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33307</strong></p>
  <p>Mod_gnutls is a TLS module for Apache HTTPD based on GnuTLS. In versions prior to 0.12.3 and 0.13.0, code for client certificate verification imported the certificate chain sent by the client into a fixed size `gnutls_x509_crt_t x509[]` array without checking the number of certificates is less than or equal to the array size. `gnutls_x509_crt_t` is a `typedef` for a pointer to an opaque GnuTLS st…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33307">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4434 – Improper certificate validation in the PAM propagation WinRM connections
 allows...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4434</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4434</guid>
    <pubDate>Fri, 20 Mar 2026 13:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4434</strong></p>
  <p>Improper certificate validation in the PAM propagation WinRM connections  allows a network attacker to perform a man-in-the-middle attack via  disabled TLS certificate verification.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4434">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-4395 – Heap-based buffer overflow in the KCAPI ECC code path of wc_ecc_import_x963_ex()...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4395</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4395</guid>
    <pubDate>Thu, 19 Mar 2026 21:17:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-4395</strong></p>
  <p>Heap-based buffer overflow in the KCAPI ECC code path of wc_ecc_import_x963_ex() in wolfSSL wolfcrypt allows a remote attacker to write attacker-controlled data past the bounds of the pubkey_raw buffer via a crafted oversized EC public key point. The WOLFSSL_KCAPI_ECC code path copies the input to key->pubkey_raw (132 bytes) using XMEMCPY without a bounds check, unlike the ATECC code path which i…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4395">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-3849 – Stack Buffer Overflow in wc_HpkeLabeledExtract via Oversized ECH Config. A vulne...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3849</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3849</guid>
    <pubDate>Thu, 19 Mar 2026 21:17:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-3849</strong></p>
  <p>Stack Buffer Overflow in wc_HpkeLabeledExtract via Oversized ECH Config. A vulnerability existed in wolfSSL 5.8.4 ECH (Encrypted Client Hello) support, where a maliciously crafted ECH config could cause a stack buffer overflow on the client side, leading to potential remote execution and client program crash. This could be exploited by a malicious TLS server supporting ECH. Note that ECH is off b…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3849">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-3549 – Heap Overflow in TLS 1.3 ECH parsing. An integer underflow existed in ECH extens...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3549</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3549</guid>
    <pubDate>Thu, 19 Mar 2026 21:17:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-3549</strong></p>
  <p>Heap Overflow in TLS 1.3 ECH parsing. An integer underflow existed in ECH extension parsing logic when calculating a buffer length, which resulted in writing beyond the bounds of an allocated buffer. Note that in wolfSSL, ECH is off by default, and the ECH standard is still evolving.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3549">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-2645 – In wolfSSL 5.8.2 and earlier, a logic flaw existed in the TLS 1.2 server state m...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-2645</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-2645</guid>
    <pubDate>Thu, 19 Mar 2026 18:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-2645</strong></p>
  <p>In wolfSSL 5.8.2 and earlier, a logic flaw existed in the TLS 1.2 server state machine implementation. The server could incorrectly accept the CertificateVerify message before the ClientKeyExchange message had been received. This issue affects wolfSSL before 5.8.4 (wolfSSL 5.8.2 and earlier is vulnerable, 5.8.4 is not vulnerable). In 5.8.4 wolfSSL would detect the issue later in the handshake. 5.…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-358</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-2645">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4396 – Improper certificate validation in Devolutions Hub Reporting Service 
2025.3.1.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4396</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4396</guid>
    <pubDate>Wed, 18 Mar 2026 20:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4396</strong></p>
  <p>Improper certificate validation in Devolutions Hub Reporting Service  2025.3.1.1 and earlier allows a network attacker to perform a  man-in-the-middle attack via disabled TLS certificate verification.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4396">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32838 – Edimax GS-5008PL firmware version 1.00.54 and prior use cleartext HTTP for the w...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32838</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32838</guid>
    <pubDate>Tue, 17 Mar 2026 22:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32838</strong></p>
  <p>Edimax GS-5008PL firmware version 1.00.54 and prior use cleartext HTTP for the web management interface without implementing TLS or SSL encryption. Attackers on the same network can intercept management traffic to capture administrator credentials and sensitive configuration data.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-319</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32838">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32627 – cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32627</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32627</guid>
    <pubDate>Mon, 16 Mar 2026 14:19:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32627</strong></p>
  <p>cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.37.2, when a cpp-httplib client is configured with a proxy and set_follow_location(true), any HTTPS redirect it follows will have TLS certificate and hostname verification silently disabled on the new connection. The client will accept any certificate presented by the redirect target — expired, self-signe…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32627">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-23240 – In the Linux kernel, the following vulnerability has been resolved:

tls: Fix ra...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23240</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23240</guid>
    <pubDate>Tue, 10 Mar 2026 18:18:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-23240</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  tls: Fix race condition in tls_sw_cancel_work_tx()  This issue was discovered during a code audit.  After cancel_delayed_work_sync() is called from tls_sk_proto_close(), tx_work_handler() can still be scheduled from paths such as the Delayed ACK handler or ksoftirqd. As a result, the tx_work_handler() worker may dereference a fr…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23240">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-30852 – Caddy is an extensible server platform that uses TLS by default. From version 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-30852</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-30852</guid>
    <pubDate>Sat, 07 Mar 2026 17:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-30852</strong></p>
  <p>Caddy is an extensible server platform that uses TLS by default. From version 2.7.5 to before version 2.11.2, the vars_regexp matcher in vars.go:337 double-expands user-controlled input through the Caddy replacer. When vars_regexp matches against a placeholder like {http.request.header.X-Input}, the header value gets resolved once (expected), then passed through repl.ReplaceAll() again (the bug).…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-30852">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-30851 – Caddy is an extensible server platform that uses TLS by default. From version 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-30851</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-30851</guid>
    <pubDate>Sat, 07 Mar 2026 17:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-30851</strong></p>
  <p>Caddy is an extensible server platform that uses TLS by default. From version 2.10.0 to before version 2.11.2, forward_auth copy_headers does not strip client-supplied headers, allowing identity injection and privilege escalation. This issue has been patched in version 2.11.2.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-30851">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26999 – Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.38 an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26999</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26999</guid>
    <pubDate>Thu, 05 Mar 2026 19:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26999</strong></p>
  <p>Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.38 and 3.6.9, there is a potential vulnerability in Traefik managing TLS handshake on TCP routers. When Traefik processes a TLS connection on a TCP router, the read deadline used to bound protocol sniffing is cleared before the TLS handshake is completed. When a TLS handshake read error occurs, the code attempts a second h…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26999">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-13476 – Rakuten Viber Cloak mode in Android v25.7.2.0g and Windows v25.6.0.0–v25.8.1.0 u...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-13476</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-13476</guid>
    <pubDate>Thu, 05 Mar 2026 19:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-13476</strong></p>
  <p>Rakuten Viber Cloak mode in Android v25.7.2.0g and Windows v25.6.0.0–v25.8.1.0 uses a static and predictable TLS ClientHello fingerprint lacking extension diversity, allowing Deep Packet Inspection (DPI) systems to trivially identify and block proxy traffic, undermining censorship circumvention. (CWE-327)</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-327</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-13476">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-30794 – Improper Certificate Validation vulnerability in rustdesk-client RustDesk Client...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-30794</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-30794</guid>
    <pubDate>Thu, 05 Mar 2026 16:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-30794</strong></p>
  <p>Improper Certificate Validation vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (HTTP API client, TLS transport modules) allows Adversary in the Middle (AiTM). This vulnerability is associated with program files src/hbbs_http/http_client.Rs and program routines TLS retry with danger_accept_invalid_certs(true).  This issue affects RustDesk Cl…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-30794">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27849 – Due to missing neutralization of special elements, OS commands can be injected v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27849</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27849</guid>
    <pubDate>Wed, 25 Feb 2026 17:25:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27849</strong></p>
  <p>Due to missing neutralization of special elements, OS commands can be injected via the update functionality of a TLS-SRP connection, which is normally used for configuring devices inside the mesh network. This issue affects MR9600: 1.0.4.205530; MX4200: 1.0.13.210200.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27849">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27848 – Due to missing neutralization of special elements, OS commands can be injected v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27848</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27848</guid>
    <pubDate>Wed, 25 Feb 2026 16:23:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27848</strong></p>
  <p>Due to missing neutralization of special elements, OS commands can be injected via the handshake of a TLS-SRP connection, which are ultimately run as the root user. This issue affects MR9600: 1.0.4.205530; MX4200: 1.0.13.210200.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27848">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27847 – Due to improper neutralization of special elements, SQL statements can be inject...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27847</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27847</guid>
    <pubDate>Wed, 25 Feb 2026 16:23:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27847</strong></p>
  <p>Due to improper neutralization of special elements, SQL statements can be injected via the handshake of a TLS-SRP connection. This can be used to inject known credentials into the database that can be utilized to successfully complete the handshake and use the protected service. This issue affects MR9600: 1.0.4.205530; MX4200: 1.0.13.210200.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27847">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-67752 – OpenEMR is a free and open source electronic health records and medical practice...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-67752</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-67752</guid>
    <pubDate>Wed, 25 Feb 2026 02:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-67752</strong></p>
  <p>OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 7.0.4, OpenEMR's HTTP client wrapper (`oeHttp`/`oeHttpRequest`) disables SSL/TLS certificate verification by default (`verify: false`), making all external HTTPS connections vulnerable to man-in-the-middle (MITM) attacks. This affects communication with government healthcare A…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-67752">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27590 – Caddy is an extensible server platform that uses TLS by default. Prior to versio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27590</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27590</guid>
    <pubDate>Tue, 24 Feb 2026 17:29:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27590</strong></p>
  <p>Caddy is an extensible server platform that uses TLS by default. Prior to version 2.11.1, Caddy's FastCGI path splitting logic computes the split index on a lowercased copy of the request path and then uses that byte index to slice the original path. This is unsafe for Unicode because `strings.ToLower()` can change UTF-8 byte length for some characters. As a result, Caddy can derive an incorrect…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27590">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27588 – Caddy is an extensible server platform that uses TLS by default. Prior to versio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27588</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27588</guid>
    <pubDate>Tue, 24 Feb 2026 17:29:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27588</strong></p>
  <p>Caddy is an extensible server platform that uses TLS by default. Prior to version 2.11.1, Caddy's HTTP `host` request matcher is documented as case-insensitive, but when configured with a large host list (>100 entries) it becomes case-sensitive due to an optimized matching path. An attacker can bypass host-based routing and any access controls attached to that route by changing the casing of the…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-178</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27588">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27587 – Caddy is an extensible server platform that uses TLS by default. Prior to versio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27587</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27587</guid>
    <pubDate>Tue, 24 Feb 2026 17:29:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27587</strong></p>
  <p>Caddy is an extensible server platform that uses TLS by default. Prior to version 2.11.1, Caddy's HTTP `path` request matcher is intended to be case-insensitive, but when the match pattern contains percent-escape sequences (`%xx`) it compares against the request's escaped path without lowercasing. An attacker can bypass path-based routing and any access controls attached to that route by changing…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-178</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27587">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27586 – Caddy is an extensible server platform that uses TLS by default. Prior to versio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27586</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27586</guid>
    <pubDate>Tue, 24 Feb 2026 17:29:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27586</strong></p>
  <p>Caddy is an extensible server platform that uses TLS by default. Prior to version 2.11.1, two swallowed errors in `ClientAuthentication.provision()` cause mTLS client certificate authentication to silently fail open when a CA certificate file is missing, unreadable, or malformed. The server starts without error but accepts any client certificate signed by any system-trusted CA, completely bypassi…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-755</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27586">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-70058 – An issue pertaining to CWE-295: Improper Certificate Validation was discovered i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-70058</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-70058</guid>
    <pubDate>Mon, 23 Feb 2026 16:29:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-70058</strong></p>
  <p>An issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in the HTTPS agent configuration for Axios requests</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-70058">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-70045 – An issue pertaining to CWE-295: Improper Certificate Validation was discovered i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-70045</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-70045</guid>
    <pubDate>Mon, 23 Feb 2026 16:29:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-70045</strong></p>
  <p>An issue pertaining to CWE-295: Improper Certificate Validation was discovered in jxcore jxm master. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in HTTPS request options when 'jx_obj.IsSecure' is true</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-70045">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-70043 – An issue pertaining to CWE-295: Improper Certificate Validation was discovered i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-70043</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-70043</guid>
    <pubDate>Mon, 23 Feb 2026 16:29:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-70043</strong></p>
  <p>An issue pertaining to CWE-295: Improper Certificate Validation was discovered in Ayms node-To master. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in TLS socket options</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-70043">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24455 – The embedded web interface of the device does not support HTTPS/TLS for 
authent...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24455</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24455</guid>
    <pubDate>Fri, 20 Feb 2026 17:25:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24455</strong></p>
  <p>The embedded web interface of the device does not support HTTPS/TLS for  authentication and uses HTTP Basic Authentication. Traffic is encoded  but not encrypted, exposing user credentials to passive interception by  attackers on the same network.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-319</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24455">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27180 – MajorDoMo (aka Major Domestic Module) is vulnerable to unauthenticated remote co...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27180</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27180</guid>
    <pubDate>Wed, 18 Feb 2026 22:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27180</strong></p>
  <p>MajorDoMo (aka Major Domestic Module) is vulnerable to unauthenticated remote code execution through supply chain compromise via update URL poisoning. The saverestore module exposes its admin() method through the /objects/?module=saverestore endpoint without authentication because it uses gr('mode') (which reads directly from $_REQUEST) instead of the framework's $this->mode. An attacker can pois…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-494</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27180">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-66614 – Improper Input Validation vulnerability.

This issue affects Apache Tomcat: from...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66614</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66614</guid>
    <pubDate>Tue, 17 Feb 2026 19:21:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-66614</strong></p>
  <p>Improper Input Validation vulnerability.  This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.14, from 10.1.0-M1 through 10.1.49, from 9.0.0-M1 through 9.0.112.  The following versions were EOL at the time the CVE was created but are  known to be affected: 8.5.0 through 8.5.100. Older EOL versions are not affected. Tomcat did not validate that the host name provided via the SNI  extensi…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66614">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-65753 – An issue in the TLS certification mechanism of Guardian Gryphon v01.06.0006.22 a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65753</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65753</guid>
    <pubDate>Tue, 17 Feb 2026 16:20:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-65753</strong></p>
  <p>An issue in the TLS certification mechanism of Guardian Gryphon v01.06.0006.22 allows attackers to execute commands as root.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65753">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-9293 – A vulnerability in the certificate validation logic may allow applications to ac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-9293</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-9293</guid>
    <pubDate>Fri, 13 Feb 2026 02:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-9293</strong></p>
  <p>A vulnerability in the certificate validation logic may allow applications to accept untrusted or improperly validated server identities during TLS communication. An attacker in a privileged network position may be able to intercept or modify traffic if they can position themselves within the communication channel.  Successful exploitation may compromise confidentiality, integrity, and availabili…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9293">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26214 – Galaxy FDS Android SDK (XiaoMi/galaxy-fds-sdk-android) version 3.0.8 and prior d...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26214</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26214</guid>
    <pubDate>Thu, 12 Feb 2026 16:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26214</strong></p>
  <p>Galaxy FDS Android SDK (XiaoMi/galaxy-fds-sdk-android) version 3.0.8 and prior disable TLS hostname verification when HTTPS is enabled (the default configuration). In GalaxyFDSClientImpl.createHttpClient(), the SDK configures Apache HttpClient with SSLSocketFactory.ALLOW_ALL_HOSTNAME_VERIFIER, which accepts any valid TLS certificate regardless of hostname mismatch. Because HTTPS is enabled by def…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-297</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26214">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-70029 – An issue in Sunbird-Ed SunbirdEd-portal v1.13.4 allows attackers to obtain sensi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-70029</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-70029</guid>
    <pubDate>Wed, 11 Feb 2026 18:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-70029</strong></p>
  <p>An issue in Sunbird-Ed SunbirdEd-portal v1.13.4 allows attackers to obtain sensitive information. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in HTTP request options</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-70029">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25961 – SumatraPDF is a multi-format reader for Windows. In 3.5.0 through 3.5.2, Sumatra...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25961</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25961</guid>
    <pubDate>Mon, 09 Feb 2026 22:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25961</strong></p>
  <p>SumatraPDF is a multi-format reader for Windows. In 3.5.0 through 3.5.2, SumatraPDF's update mechanism disables TLS hostname verification (INTERNET_FLAG_IGNORE_CERT_CN_INVALID) and executes installers without signature checks. A network attacker with any valid TLS certificate (e.g., Let's Encrypt) can intercept the update check request, inject a malicious installer URL, and achieve arbitrary code…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25961">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-66598 – A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corpo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66598</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66598</guid>
    <pubDate>Mon, 09 Feb 2026 05:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-66598</strong></p>
  <p>A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation.    This product supports old SSL/TLS versions, potentially allowing an attacker to decrypt communications with the web server.    The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-327</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66598">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-1709 – A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does n...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1709</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1709</guid>
    <pubDate>Fri, 06 Feb 2026 20:16:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-1709</strong></p>
  <p>A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perform administrative operations, including listing agents, retrieving public Trusted Platform Module (TPM) data, and deleting agents, by connecting with…</p>
  <p><strong>CVSS:</strong> 9.4 · <strong>CWE:</strong> CWE-322</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1709">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-68121 – During session resumption in crypto/tls, if the underlying Config has its Client...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-68121</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-68121</guid>
    <pubDate>Thu, 05 Feb 2026 18:16:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-68121</strong></p>
  <p>During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between the initial handshake and the resumed handshake, the resumed handshake may succeed when it should have failed. This may happen when a user calls Config.Clone and mutates the returned Config, or uses Config.GetConfigForClient. This can cause a client to resume a session with a serv…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-68121">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-25160 – Alist is a file list program that supports multiple storages, powered by Gin and...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25160</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25160</guid>
    <pubDate>Wed, 04 Feb 2026 20:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-25160</strong></p>
  <p>Alist is a file list program that supports multiple storages, powered by Gin and Solidjs. Prior to version 3.57.0, the application disables TLS certificate verification by default for all outgoing storage driver communications, making the system vulnerable to Man-in-the-Middle (MitM) attacks. This enables the complete decryption, theft, and manipulation of all data transmitted during storage oper…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25160">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25060 – OpenList Frontend is a UI component for OpenList. Prior to 4.1.10, certificate v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25060</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25060</guid>
    <pubDate>Mon, 02 Feb 2026 23:16:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25060</strong></p>
  <p>OpenList Frontend is a UI component for OpenList. Prior to 4.1.10, certificate verification is disabled by default for all storage driver communications. The TlsInsecureSkipVerify setting is default to true in the DefaultConfig() function in internal/conf/config.go. This vulnerability enables Man-in-the-Middle (MitM) attacks by disabling TLS certificate verification, allowing attackers to interce…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-599</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25060">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-40620 – FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Sy...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-40620</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-40620</guid>
    <pubDate>Wed, 28 Jan 2026 19:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-40620</strong></p>
  <p>FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS certificates when downloading update packages through its auto-update mechanism. An attacker (suitably positioned on the network) could intercept the update request and deliver a malicious update package in order to gain arbitrary code execution on affected devices. This affects R…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-40620">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-68137 – EVerest is an EV charging software stack. Prior to version 2025.10.0, an integer...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-68137</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-68137</guid>
    <pubDate>Wed, 21 Jan 2026 20:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-68137</strong></p>
  <p>EVerest is an EV charging software stack. Prior to version 2025.10.0, an integer overflow occurring in `SdpPacket::parse_header()` allows the current buffer length to be set to 7 after a complete header of size 8 has been read. The remaining length to read is computed using the current length subtracted by the header length which results in a negative value. This value is then interpreted as `SIZ…</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-68137">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-68133 – EVerest is an EV charging software stack. In versions 2025.9.0 and below, an att...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-68133</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-68133</guid>
    <pubDate>Wed, 21 Jan 2026 03:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-68133</strong></p>
  <p>EVerest is an EV charging software stack. In versions 2025.9.0 and below, an attacker can exhaust the operating system's memory and cause the module to terminate by initiating an unlimited number of TCP connections that never proceed to ISO 15118-2 communication. This is possible because a new thread is started for each incoming plain TCP or TLS socket connection before any verification occurs, a…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-68133">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
