
CVE-2026-48928 Hostname Matching Inconsistency in Node.js Causes mTLS Trust-Policy Bypass https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-48928
Post summary
The post announces CVE-2026-48928, a hostname matching flaw in Node.js that allows an attacker to bypass mTLS trust policies, without mentioning any PoC, exploit code, active exploitation, or patch.
