VulnSea

CWE-295

CVEs classified under CWE-295, newest first.

182 CVEsRSS

CVE-2026-79975Medium· 5.5
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. A low privileged attacker with local access could potentially explo…

▾ Sunlitdell · secure_connect_gatewayEPSS 0.09%via NVD
CVE-2026-79639High· 7.6
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially ex…

▾ Twilightdell · secure_connect_gatewayEPSS 0.16%via NVD
CVE-2026-80164High· 7.4
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially ex…

▾ Twilightdell · secure_connect_gatewayEPSS 0.25%via NVD
CVE-2026-79734Medium· 5.9
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially ex…

▾ Sunlitdell · secure_connect_gatewayEPSS 0.22%via NVD
CVE-2026-79691High· 7.3
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially ex…

▾ Twilightdell · secure_connect_gatewayEPSS 0.19%via NVD
CVE-2026-79644High· 7.4
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially ex…

▾ Twilightdell · secure_connect_gatewayEPSS 0.24%via NVD
CVE-2026-79642Medium· 5.6
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially ex…

▾ Sunlitdell · secure_connect_gatewayEPSS 0.18%via NVD
CVE-2026-20500Medium· 5.5
2w ago

In Modem, there is a possible system crash due to improper input validation

In Modem, there is a possible system crash due to improper input validation. This could lead to local denial of service with User execution privileges needed. User interaction is needed for exploitation. Patch ID: MOLY01810811; Issue ID:…

▾ Sunlitmediatek · mt2716_firmwareEPSS 0.09%via NVD
CVE-2026-82208High· 7.5PoC⚖ disputed
3w ago

With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the cached store after the callback returns

With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the cached store after the callback returns. A certificate trusted by the cached sto…

▾ Midnighthaxx · curlEPSS 0.41%via NVD
CVE-2026-80231High· 7.5PoC⚖ disputed
3w ago

A flaw in libcurl makes it wrongly reuse an existing HTTPS connection setup for a given hostname even when using a different Native CA Store setting (`CURLSSLOPT_NATIVE_CA`) than when the connection was created.

A flaw in libcurl makes it wrongly reuse an existing HTTPS connection setup for a given hostname even when using a different Native CA Store setting (`CURLSSLOPT_NATIVE_CA`) than when the connection was created.

▾ Midnighthaxx · curlEPSS 0.90%via NVD
CVE-2026-80230High· 7.5PoC⚖ disputed
3w ago

When `CURLOPT_PINNEDPUBLICKEY` is configured alongside options that disable standard peer verification (`CURLOPT_SSL_VERIFYPEER = 0` and `CURLOPT_SSL_VERIFYHOST = 0`), libcurl fails to enforce public key pinning on connections establishe…

When `CURLOPT_PINNEDPUBLICKEY` is configured alongside options that disable standard peer verification (`CURLOPT_SSL_VERIFYPEER = 0` and `CURLOPT_SSL_VERIFYHOST = 0`), libcurl fails to enforce public key pinning on connections establishe…

▾ Midnighthaxx · curlEPSS 0.55%via NVD
CVE-2026-86185High· 8.0
3w ago

Bilibili Desktop through 1.18.0 disables TLS certificate verification process-wide and executes unsigned remote JavaScript configuration without integrity checks

Bilibili Desktop through 1.18.0 disables TLS certificate verification process-wide and executes unsigned remote JavaScript configuration without integrity checks. An attacker in an on-path network position can intercept configuration fet…

▾ TwilightBilibili · Bilibili DesktopEPSS 0.17%via NVD
CVE-2026-85525High· 7.4
3w ago

Improper OCSP response validation in the Snowflake Python, Go, JDBC, and Node.js drivers allowed a revoked TLS certificate to be accepted as valid, because OCSP responses were not reliably bound to the certificate being validated and def…

Improper OCSP response validation in the Snowflake Python, Go, JDBC, and Node.js drivers allowed a revoked TLS certificate to be accepted as valid, because OCSP responses were not reliably bound to the certificate being validated and def…

▾ TwilightSnowflake · snowflake-connector-pythonEPSS 0.16%via NVD
CVE-2026-84961High· 7.4
3w ago

undici's BalancedPool constructor passes its entire options object through an internal deep-clone that serializes and reparses the value as JSON

undici's BalancedPool constructor passes its entire options object through an internal deep-clone that serializes and reparses the value as JSON. Because JSON cannot represent functions, any function-valued TLS option, such as a caller-s…

▾ Twilightnodejs · undiciEPSS 0.25%via NVD
CVE-2026-15937None
3w ago

Improper certificate validation in Checkmk <2.5.0p10 allows a relay and a push agent that share the same UUID to reuse each other's mTLS certificate to authenticate against agent receiver endpoints in either direction, because the endpoi…

Improper certificate validation in Checkmk <2.5.0p10 allows a relay and a push agent that share the same UUID to reuse each other's mTLS certificate to authenticate against agent receiver endpoints in either direction, because the endpoi…

▾ SunlitEPSS 0.14%via NVD
GHSA-6hxq-p678-4hr2Low
3w ago

SimpleWebAuthn: Registration verification does not sufficiently ensure that attestation certificates chain to a trust anchor

SimpleWebAuthn: Registration verification does not sufficiently ensure that attestation certificates chain to a trust anchor

▾ Sunlitsimplewebauthn · @simplewebauthn/servervia GHSA
CVE-2026-85221Critical· 9.1
3w ago

MISP contains an improper TLS certificate validation vulnerability in CurlClient

MISP contains an improper TLS certificate validation vulnerability in CurlClient. The CurlClient::$verifyPeer property was not explicitly initialized and therefore defaulted to null. When passed to cURL, this value effectively disabled T…

▾ Midnightmisp-project · mispEPSS 0.27%via NVD
CVE-2026-9036Medium· 5.9
3w ago

IBM Netezza Software 11.3.0.3 through Interim Fix 002 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information using man in the middle techniques.

IBM Netezza Software 11.3.0.3 through Interim Fix 002 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information using man in the middle techniques.

▾ Sunlitibm · netezza_performance_serverEPSS 0.20%via NVD
CVE-2026-82662Medium· 6.5PoC
3w ago

Nodemailer before 8.0.8 disables TLS certificate verification in lib/fetch/index.js through rejectUnauthorized: false, allowing attackers to intercept OAuth2 token requests

Nodemailer before 8.0.8 disables TLS certificate verification in lib/fetch/index.js through rejectUnauthorized: false, allowing attackers to intercept OAuth2 token requests. Attackers in a machine-in-the-middle position can capture OAuth…

▾ Twilightnodemailer · nodemailerEPSS 0.19%via NVD
CVE-2026-55215High· 7.5
1mo ago

MariaDB Connector/Node.js is used to connect applications developed on Node.js to MariaDB and MySQL databases

MariaDB Connector/Node.js is used to connect applications developed on Node.js to MariaDB and MySQL databases. Prior to versions 3.3.3, 3.4.6, and 3.5.3, when ssl is enabled without a pinned CA or server certificate, MariaDB Connector/No…

▾ Twilightmariadb · mariadbEPSS 0.57%via NVD
CVE-2026-81034Medium· 6.5
1mo ago

Netmaker disables certificate verification on the connection to the configured mail server

Netmaker disables certificate verification on the connection to the configured mail server. The sender in pro/email/smtp.go assigns a TLS configuration whose skip-verify field is set to true unconditionally, directly beneath a comment st…

▾ SunlitEPSS 0.26%via NVD
CVE-2026-54548Low· 3.3
1mo ago

kas Persistently Disables SSH Host Key Checking

kas Persistently Disables SSH Host Key Checking

▾ Sunlitkas · kasEPSS 0.11%via OSV
CVE-2026-79785Medium· 5.9
1mo ago

X-AnyLabeling's model downloader disabled TLS certificate verification

X-AnyLabeling's model downloader disabled TLS certificate verification. download_with_retry in anylabeling/services/auto_labeling/model.py built a context with ssl._create_unverified_context() and passed it to urllib.request.urlopen, so …

▾ SunlitEPSS 0.28%via NVD
CVE-2026-62243High· 7.5
1mo ago

Netty (io.netty:netty-handler) versions from 4.2.0.Final through 4.2.16.Final and versions through 4.1.136.Final disable TLS hostname verification on the SslProvider.OPENSSL client path when a plain (non-extended) X509TrustManager is use…

Netty (io.netty:netty-handler) versions from 4.2.0.Final through 4.2.16.Final and versions through 4.1.136.Final disable TLS hostname verification on the SslProvider.OPENSSL client path when a plain (non-extended) X509TrustManager is use…

▾ TwilightRed Hat · Red Hat Ceph Storage 9EPSS 0.25%via NVD
CVE-2026-73251Critical· 9.3
1mo ago

Mongoose is an embedded web server and network library

Mongoose is an embedded web server and network library. Prior to 7.23, a network attacker can impersonate a TLS server to a Mongoose client configured with a multi-certificate CA bundle. In src/tls_builtin.c, the mg_tls_init() function s…

▾ Midnightcesanta · mongooseEPSS 0.33%via NVD
CVE-2026-73253Critical· 9.1
1mo ago

Mongoose is an embedded web server and network library

Mongoose is an embedded web server and network library. Prior to version 7.22, an on-path network attacker with a wildcard certificate for a parent domain can impersonate deeper subdomains to a client using the built-in TLS stack. The mg…

▾ MidnightRed HatEPSS 0.35%via NVD
CVE-2026-53583Medium· 6.5
1mo ago

libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application

libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Prior to 1.8.6 and 1.9.5, verify_server_cert in src/libgit2/stream…

▾ SunlitEPSS 0.24%via NVD
CVE-2026-16835Critical· 9.6
1mo ago

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the FSP management network protocol

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the FSP management network protocol. An unauthenticated attacker on the manag…

▾ MidnightEPSS 0.36%via NVD
CVE-2026-76242Critical
1mo ago

stigmem-node 0.9.0a1 accepts federation peer key material during peer registration without a separate administrator out-of-band fingerprint approval step

stigmem-node 0.9.0a1 accepts federation peer key material during peer registration without a separate administrator out-of-band fingerprint approval step. On nodes that accept federation peer registration over a network where initial reg…

▾ Midnightstigmem-node · stigmem-nodeEPSS 0.35%via NVD
CVE-2026-49283High· 8.7
1mo ago

The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality

The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. Prior to versions 4.19.3, 4.20.2, 5.0.6, and 6.2.1, the HTTPArtifact::receive() flow can treat an unsigned embedded SAML Response as cryptographically vali…

▾ Twilightsimplesamlphp · simplesamlphp/saml2EPSS 0.47%via NVD
CWE-295 vulnerabilities (CVEs) — page 3 · VulnSea