CWE-299 · 17 kayıt
Improper Check for Certificate Revocation
Bu sınıftaki CVE’ler
17 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2025-3085İstismar yok | MongoDB Server running on Linux may allow unexpected connections where intermediate certificates are revokedmongodb · mongodb · CWE-299 | Kritik9,8 | — | %0,3 | 1 Nis 2025 |
36İzleyin | CVE-2026-4428İstismar yok | CRL Distribution Point Scope Check Logic Error in AWS-LCaws · aws-lc · CWE-299 | Kritik9,1 | — | %0,3 | 19 Mar 2026 |
33İzleyin | CVE-2020-1675İstismar yok | Juniper Networks Mist Cloud UI: SAML authentication certificate vulnerability.juniper · mist cloud ui · CWE-299 | Yüksek8,3 | — | %0,6 | 16 Eki 2020 |
32İzleyin | CVE-2026-61699İstismar yok | nebula-mesh: Certificate revocation is never enforced at the meshforgekeep · nebula-mesh · CWE-299 | Yüksek8,1 | — | %0,4 | 4 Eyl 2026 |
32İzleyin | CVE-2026-9636İstismar yok | Rockwell Automation CompactLogix® 5380 ControlLogix® 5580 / 1756-EN4 Communications Module – Certificate Revocation List Vulnerabilityrockwell automation · controllogix® 5580, compactlogix® 5380, guardlogix® 5580, compact guardlogix® 5380, 1756-en4tr · CWE-299 | Yüksek8,2 | — | %0,2 | 14 Tem 2026 |
32İzleyin | CVE-2025-11955İstismar yok | Incorrect validation of OCSP certificates in TheGreenBow VPN Client Windows Enterprisethegreenbow · thegreenbow vpn client windows enterprise · CWE-299 | Yüksek8,2 | — | %0,2 | 27 Eki 2025 |
29İzleyin | CVE-2026-56821İstismar yok | Netty: Out-of-date OCSP Responses Accepted by OcspServerCertificateValidatornetty · netty · CWE-299 | Yüksek7,4 | — | %0,2 | 28 Tem 2026 |
28İzleyin | CVE-2023-23690İstismar yok | Cloud Mobility for Dell EMC Storage, versions 1.3.0.X and below contains an Improper Check for Certificate Revocation vulnerability.dell · cloud mobility for dell emc storage · CWE-299 | Yüksek7,0 | — | %0,2 | 19 Oca 2023 |
26İzleyin | CVE-2026-73581İstismar yok | Apache Tomcat: OpenSSL and OpenSSL-FFM TLS implementations ignore CRLs when certificate uses a keystoreapache software foundation · apache tomcat · CWE-299 | Orta6,5 | — | %0,1 | 23 Eyl 2026 |
25İzleyin | CVE-2020-16228İstismar yok | Philips Patient Monitoring Devices Improper Check for Certificate Revocationphilips · patient information center ix · CWE-299 | Orta6,4 | — | %0,4 | 11 Eyl 2020 |
23İzleyin | CVE-2026-93493İstismar yok | Io.netty/netty-handler-ssl-ocsp: netty: ocsp validation silently skipped when a response omits the optional nextupdate fieldred hat · red hat build of apache camel for spring boot 4 · CWE-299 | Orta5,9 | — | %0,3 | 18 Eyl 2026 |
23İzleyin | CVE-2026-93602İstismar yok | rustls-webpki before 0.103.10 CRL Revocation Check Bypassrustls · webpki · CWE-299 | Orta5,9 | — | %0,2 | 18 Eyl 2026 |
22İzleyin | CVE-2026-6899İstismar yok | Improper Check for Certificate Revocation in S2OPCsysterel · s2opc · CWE-299 | Orta5,6 | — | %0,2 | 9 Haz 2026 |
18İzleyin | CVE-2025-36057İstismar yok | IBM Cognos Analytics Mobile (iOS) authentication bypassibm · cognos analytics mobile · CWE-299 | Orta4,6 | — | %0,2 | 21 Tem 2025 |
16İzleyin | CVE-2024-56138İstismar yok | Timestamp signature generation lacks certificate revocation check in notion-gonotaryproject · notation-go · CWE-299 | Orta4,0 | — | %0,1 | 13 Oca 2025 |
10İzleyin | GHSA-g27r-r6ph-vf5rİstismar yok | sequoia-git has broken hard revocation handlingcrates.io · sequoia-git · CWE-299 | Düşük2,5 | — | — | 4 May 2026 |
9İzleyin | CVE-2026-94417İstismar yok | CRL check skipped when OCSP enabled and certificate has no OCSP URLwolfssl · wolfssl · CWE-299 | Düşük2,3 | — | %0,2 | 3 gün önce |
- CVE-2025-308539İzleyin
MongoDB Server running on Linux may allow unexpected connections where intermediate certificates are revoked
KritikCVSS 9,8İstismar yokEPSS %0mongodb · mongodb1 Nis 2025
- CVE-2026-442836İzleyin
CRL Distribution Point Scope Check Logic Error in AWS-LC
KritikCVSS 9,1İstismar yokEPSS %0aws · aws-lc19 Mar 2026
- CVE-2020-167533İzleyin
Juniper Networks Mist Cloud UI: SAML authentication certificate vulnerability.
YüksekCVSS 8,3İstismar yokEPSS %1juniper · mist cloud ui16 Eki 2020
- CVE-2026-6169932İzleyin
nebula-mesh: Certificate revocation is never enforced at the mesh
YüksekCVSS 8,1İstismar yokEPSS %0forgekeep · nebula-mesh4 Eyl 2026
- CVE-2026-963632İzleyin
Rockwell Automation CompactLogix® 5380 ControlLogix® 5580 / 1756-EN4 Communications Module – Certificate Revocation List Vulnerability
YüksekCVSS 8,2İstismar yokEPSS %0rockwell automation · controllogix® 5580, compactlogix® 5380, guardlogix® 5580, compact guardlogix® 5380, 1756-en4tr14 Tem 2026
- CVE-2025-1195532İzleyin
Incorrect validation of OCSP certificates in TheGreenBow VPN Client Windows Enterprise
YüksekCVSS 8,2İstismar yokEPSS %0thegreenbow · thegreenbow vpn client windows enterprise27 Eki 2025
- CVE-2026-5682129İzleyin
Netty: Out-of-date OCSP Responses Accepted by OcspServerCertificateValidator
YüksekCVSS 7,4İstismar yokEPSS %0netty · netty28 Tem 2026
- CVE-2023-2369028İzleyin
Cloud Mobility for Dell EMC Storage, versions 1.3.0.X and below contains an Improper Check for Certificate Revocation vulnerability.
YüksekCVSS 7,0İstismar yokEPSS %0dell · cloud mobility for dell emc storage19 Oca 2023
- CVE-2026-7358126İzleyin
Apache Tomcat: OpenSSL and OpenSSL-FFM TLS implementations ignore CRLs when certificate uses a keystore
OrtaCVSS 6,5İstismar yokEPSS %0apache software foundation · apache tomcat23 Eyl 2026
- CVE-2020-1622825İzleyin
Philips Patient Monitoring Devices Improper Check for Certificate Revocation
OrtaCVSS 6,4İstismar yokEPSS %0philips · patient information center ix11 Eyl 2020
- CVE-2026-9349323İzleyin
Io.netty/netty-handler-ssl-ocsp: netty: ocsp validation silently skipped when a response omits the optional nextupdate field
OrtaCVSS 5,9İstismar yokEPSS %0red hat · red hat build of apache camel for spring boot 418 Eyl 2026
- CVE-2026-9360223İzleyin
rustls-webpki before 0.103.10 CRL Revocation Check Bypass
OrtaCVSS 5,9İstismar yokEPSS %0rustls · webpki18 Eyl 2026
- CVE-2026-689922İzleyin
Improper Check for Certificate Revocation in S2OPC
OrtaCVSS 5,6İstismar yokEPSS %0systerel · s2opc9 Haz 2026
- CVE-2025-3605718İzleyin
IBM Cognos Analytics Mobile (iOS) authentication bypass
OrtaCVSS 4,6İstismar yokEPSS %0ibm · cognos analytics mobile21 Tem 2025
- CVE-2024-5613816İzleyin
Timestamp signature generation lacks certificate revocation check in notion-go
OrtaCVSS 4,0İstismar yokEPSS %0notaryproject · notation-go13 Oca 2025
- GHSA-g27r-r6ph-vf5r10İzleyin
sequoia-git has broken hard revocation handling
DüşükCVSS 2,5İstismar yokcrates.io · sequoia-git4 May 2026
- CVE-2026-944179İzleyin
CRL check skipped when OCSP enabled and certificate has no OCSP URL
DüşükCVSS 2,3İstismar yokEPSS %0wolfssl · wolfssl3 gün önce