Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Jorge Milla

#29995of 57,362
9.1Total CVSS
Vulnerabilities · 1
PT-2026-99510
9.1
2026-09-27
Wolfssl · Wolfssl · CVE-2026-89134
**Name of the Vulnerable Software and Affected Versions** wolfSSL version 5.9.2 **Description** A flaw exists where a certificate containing a Subject Alternative Name (SAN) other than a dNSName (such as `registeredID` or `iPAddress`), but lacking a dNSName SAN, can bypass the Subject Common Name (CN) dNSName name-constraint check. This occurs because the fallback mechanism for treating the CN as a DNS name was incorrectly gated, allowing an out-of-scope CN to be accepted. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.