CWE-298 · 8 kayıt
Improper Validation of Certificate Expiration
Bu sınıftaki CVE’ler
8 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2025-67109İstismar yok | Improper verification of the time certificate in Eclipse Cyclone DDS before v0.10.5 allows attackers to bypass certificate checks and executeclipse · cyclone data distribution service · CWE-298 | Kritik10,0 | — | %0,3 | 23 Ara 2025 |
40Planlayın | CVE-2025-67108İstismar yok | eProsima Fast-DDS v3.3 was discovered to contain improper validation for ticket revocation, resulting in insecure communications and connecteprosima · fast dds · CWE-298 | Kritik10,0 | — | %0,3 | 23 Ara 2025 |
28İzleyin | CVE-2025-61736İstismar yok | iSTAR- Improper Validation of Certificate Expirationjohnson controls · istarex, istar edge, istar ultra lt, istar ultra , istar ultra se · CWE-298 | Yüksek7,1 | — | %0,1 | 17 Ara 2025 |
26İzleyin | CVE-2023-42446İstismar yok | Pow Mnesia cache doesn't invalidate all expired keys on startuppowauth · pow · CWE-298 | Orta6,5 | — | %0,5 | 18 Eyl 2023 |
24İzleyin | CVE-2025-4384İstismar yok | Certificate validity not properly verifiedarcinfo · pcvue · CWE-298 | Orta6,0 | — | %0,1 | 6 May 2025 |
22İzleyin | CVE-2025-59036İstismar yok | Infrahub allows authentication with deleted and expired API tokensopsmill · infrahub · CWE-298 | Orta5,5 | — | %0,2 | 9 Eyl 2025 |
21İzleyin | CVE-2024-1248İstismar yok | Role Overwriting via Silent JIT Provisioning in Multiple WSO2 Products Enables Privilege Escalationwso2 · api manager · CWE-298 | Orta5,3 | — | %0,3 | 4 Tem 2026 |
11İzleyin | CVE-2026-86231İstismar yok | mwiede jsch KnownHosts.java getRevokedKeys improper check for certificate revocationmwiede · jsch · CWE-298 | Düşük2,9 | — | %0,4 | 6 Eyl 2026 |
- CVE-2025-6710940Planlayın
Improper verification of the time certificate in Eclipse Cyclone DDS before v0.10.5 allows attackers to bypass certificate checks and execut
KritikCVSS 10,0İstismar yokEPSS %0eclipse · cyclone data distribution service23 Ara 2025
- CVE-2025-6710840Planlayın
eProsima Fast-DDS v3.3 was discovered to contain improper validation for ticket revocation, resulting in insecure communications and connect
KritikCVSS 10,0İstismar yokEPSS %0eprosima · fast dds23 Ara 2025
- CVE-2025-6173628İzleyin
iSTAR- Improper Validation of Certificate Expiration
YüksekCVSS 7,1İstismar yokEPSS %0johnson controls · istarex, istar edge, istar ultra lt, istar ultra , istar ultra se17 Ara 2025
- CVE-2023-4244626İzleyin
Pow Mnesia cache doesn't invalidate all expired keys on startup
OrtaCVSS 6,5İstismar yokEPSS %1powauth · pow18 Eyl 2023
- CVE-2025-438424İzleyin
Certificate validity not properly verified
OrtaCVSS 6,0İstismar yokEPSS %0arcinfo · pcvue6 May 2025
- CVE-2025-5903622İzleyin
Infrahub allows authentication with deleted and expired API tokens
OrtaCVSS 5,5İstismar yokEPSS %0opsmill · infrahub9 Eyl 2025
- CVE-2024-124821İzleyin
Role Overwriting via Silent JIT Provisioning in Multiple WSO2 Products Enables Privilege Escalation
OrtaCVSS 5,3İstismar yokEPSS %0wso2 · api manager4 Tem 2026
- CVE-2026-8623111İzleyin
mwiede jsch KnownHosts.java getRevokedKeys improper check for certificate revocation
DüşükCVSS 2,9İstismar yokEPSS %0mwiede · jsch6 Eyl 2026