
CVE-2026-39984 Sigstore Timestamp Authority is a service for issuing RFC 3161 timestamps. Versions 2.0.5 and below contain an authorization bypass vulnerability in the VerifyTimesta… https://www.cve.org/CVERecord?id=CVE-2026-39984
Post summary
The post announces CVE-2026-39984, describing an authorization bypass in Sigstore Timestamp Authority v2.0.5 and earlier, but offers no PoC, exploit, or patch information.
