Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.8
CVE-2025-29883
An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attac…
File Station
5.5.6.4791+
HIGH 8.8
CVE-2025-29884
An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attac…
File Station
5.5.6.4791+
HIGH 8.8
CVE-2025-29885
An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attac…
File Station
5.5.6.4791+
HIGH 8.8
CVE-2025-22486
An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attac…
File Station
5.5.6.4791+
MEDIUM 6.5
CVE-2025-4947
libcurl accidentally skips the certificate verification for QUIC connections when connecting to a host specified as an IP address in the URL. Therefo…
Curl
8.14.0+
HIGH 7.0
CVE-2025-5279
When the Amazon Redshift Python Connector is configured with the BrowserAzureOAuth2CredentialsProvider plugin, the driver skips the SSL certificate v…
Mitigation only
MEDIUM 6.7
CVE-2024-13956
SSL Verification Bypass vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ASPECT-Enterprise: through …
Mitigation only
MEDIUM 6.5
CVE-2025-4575
Issue summary: Use of -addreject option with the openssl x509 application adds
a trusted use instead of a rejected use for a certificate.
Impact sum…
OpenSSL
Patch available
MEDIUM 6.5
CVE-2024-45641
IBM Security ReaQta EDR 3.12 could allow an attacker to perform unauthorized actions due to improper SSL certificate validation.
Security Qradar Edr
3.12.17+
MEDIUM 6.5
CVE-2023-33861
IBM Security ReaQta EDR 3.12 could allow an attacker to spoof a trusted entity by interfering with the communication path between the host and client.
Security Qradar Edr
3.12.17+
MEDIUM 5.9
CVE-2025-32407
Samsung Internet for Galaxy Watch version 5.0.9, available up until Samsung Galaxy Watch 3, does not properly validate TLS certificates, allowing for…
Internet
No fix yet
CRITICAL 9.4
CVE-2025-3463
"This issue is limited to motherboards and does not affect laptops, desktop computers, or other endpoints." An insufficient validation vulnerability …
Mitigation only
MEDIUM 5.9
CVE-2025-20157
A vulnerability in certificate validation processing of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated,…
Catalyst Sd Wan Manager
Mitigation only
HIGH 7.5
CVE-2024-47619
syslog-ng is an enhanced log daemo. Prior to version 4.8.2, `tls_wildcard_match()` matches on certificates such as `foo.*.bar` although that is not a…
Debian Linux
4.8.2+
MEDIUM 5.4
CVE-2025-3218
IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 is vulnerable to authentication and authorization attacks due to incorrect validation processing in IBM i Netserver…
I
Mitigation only
MEDIUM 6.5
CVE-2025-37730
Improper certificate validation in Logstash's TCP output could lead to a man-in-the-middle (MitM) attack in “client” mode, as hostname verification i…
Mitigation only
MEDIUM 5.7
CVE-2025-20670
In Modem, there is a possible permission bypass due to improper certificate validation. This could lead to remote information disclosure, if a UE has…
Nr16
Mitigation only
HIGH 7.5
CVE-2025-27820
A bug in PSL validation logic in Apache HttpClient 5.4.x disables domain checks, affecting cookie management and host name verification. Discovered b…
Httpclient
5.4.3+
HIGH 8.1
CVE-2025-28169
BYD QIN PLUS DM-i Dilink OS v3.0_13.1.7.2204050.1 to v3.0_13.1.7.2312290.1_0 was discovered to cend broadcasts to the manufacturer's cloud server une…
Mitigation only
MEDIUM 6.5
CVE-2025-26478
Dell ECS version 3.8.1.4 and prior contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access…
Elastic Cloud Storage
4.0.0.0+
HIGH 8.1
CVE-2024-42193
HCL BigFix Web Reports' service communicates over HTTPS but exhibits a weakness in its handling of SSL certificate validation. This scenario presents…
Bigfix Platform
10.0.13 / 11.0.4+
MEDIUM 6.7
CVE-2025-30000
A vulnerability has been identified in Siemens License Server (SLS) (All versions < V4.3). The affected application does not properly restrict permis…
Mitigation only
MEDIUM 5.5
CVE-2021-25635
An Improper Certificate Validation vulnerability in LibreOffice allowed
an attacker to self sign an ODF document, with a signature untrusted by
the…
Libreoffice
7.0.5.1+
MEDIUM 5.9
CVE-2025-0254
HCL Digital Experience components Ring API and dxclient may be vulnerable to man-in-the-middle (MitM) attacks prior to 9.5 CF226. An attacker could …
Mitigation only
HIGH 7.5
CVE-2024-10444
Improper certificate validation vulnerability in the LDAP utilities in Synology DiskStation Manager (DSM) before 7.1.1-42962-8, 7.2.1-69057-7 and 7.2…
Diskstation Manager
7.1.1-42962-8 / 7.2.1-69057-7+
MEDIUM 5.3
CVE-2024-10445
Improper certificate validation vulnerability in the update functionality in Synology BeeStation OS (BSM) before 1.1-65374 and Synology DiskStation M…
Beestation Os
6.2.4-25556-8 / 7.2.1-69057-6+
HIGH 8.7
CVE-2024-41724
Improper Certificate Validation (CWE-295) in the Gallagher Command Centre SALTO integration allowed an attacker to spoof the SALTO server.
This …
Mitigation only
HIGH 7.2
CVE-2024-43107
Improper Certificate Validation (CWE-295) in the Gallagher Milestone Integration Plugin (MIP) permits unauthenticated messages (e.g. alarm events) to…
Mitigation only
HIGH 8.8
CVE-2024-50394
An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow remote attackers t…
Helpdesk
3.3.3+
MEDIUM 6.4
CVE-2025-23118
An Improper Certificate Validation vulnerability could allow an authenticated malicious actor with access to UniFi Protect Cameras adjacent network t…
Mitigation only