
Upwind Security MDR@UpwindMDR
🚨Critical - GnuTLS Invalid X.509 Extension Acceptance via Improper Cert Validation (CVE-2026-95210) GnuTLS 3.8.13 performs improper certificate validation when parsing X.509 extensions, allowing certificates with invalid extensions to be accepted as trusted. A network attacker can exploit this during TLS handshake to bypass expected certificate checks and enable MITM/downgrade of trust decisions. 👉Affected: gnutls 3.8.13
0000043
315 followersView on X
