CWE-295— Improper Certificate Validation
The product does not validate, or incorrectly validates, a certificate.— MITRE CWE catalog
1,642 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-295page 18 of 33
- CVE-2026-85086MEDIUMCVSS 6.9EG 6.92026-10-02
Improper certificate validation, Initialization of a resource with an insecure default vulnerability in Apache Thrift perl bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0,…
- CVE-2026-69248MEDIUMCVSS 6.9EG 6.92026-08-03
cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. In versions 45.0.0 through 48.0.0, if an intermediate constrained CA permits the DNS name foo.example.com, and the leaf certificate has…
- CVE-2026-40944MEDIUMCVSS 6.9EG 6.92026-04-21
Oxia is a metadata store and coordination system. Prior to 0.16.2, the trustedCertPool() function in the TLS configuration only parses the first PEM block from CA certificate files. When a CA bundle contains multiple certificates (e.g., in…
- CVE-2025-62375MEDIUMCVSS 6.9EG 6.92025-10-15
go-witness and witness are Go modules for generating attestations. In go-witness versions 0.8.6 and earlier and witness versions 0.9.2 and earlier the AWS attestor improperly verifies AWS EC2 instance identity documents. Verification can i…
- CVE-2025-68482MEDIUMCVSS 5.9EG 6.92026-03-10
A improper certificate validation vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.8, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions, FortiAnalyzer 6.4 all versions, FortiManager …
- CVE-2026-10726MEDIUMCVSS 6.8EG 6.82026-09-30
Cato Windows SDP Client before version 6.12.6 contains an arbitrary file disclosure vulnerability. A low-privileged local user can cause the Windows service, running as Local System, to read and disclose arbitrary local files due to improp…
- CVE-2026-73587MEDIUMCVSS 6.8EG 6.82026-09-23
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerabilit…
- CVE-2026-81447MEDIUMCVSS 6.8EG 6.82026-09-17
Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to …
- CVE-2026-87872MEDIUMCVSS 6.8EG 6.82026-09-09
A flaw was found in the OCAPI modules (ocapi_command, ocapi_info) of the community.general Ansible collection. The shared OCAPI request helper disables TLS certificate validation on every request and the modules expose no parameter to re-e…
- CVE-2026-11814MEDIUMCVSS 6.8EG 6.82026-08-11
A command injection vulnerability in the listed NETGEAR models allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker-in-the-middle) to compromise the confidentiality and integrity of th…
- CVE-2026-41119MEDIUMCVSS 6.8EG 6.82026-05-18
Dell Live Optics Windows and Personal Edition collectors contain an improper certificate validation vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability leading to loss of confidentiality and integr…
- CVE-2026-44305MEDIUMCVSS 6.8EG 6.82026-05-12
Lemur manages TLS certificate creation. Prior to 1.9.0, when LDAP TLS is enabled (LDAP_USE_TLS = True), Lemur's LDAP authentication module unconditionally disables TLS certificate verification at the global ldap module level. This allows a…
- CVE-2026-42312MEDIUMCVSS 6.8EG 6.82026-05-11
pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the set_config_value() API method (@permission(Perms.SETTINGS)) in src/pyload/core/api/__init__.py gates security-sensitive options behind a hand…
- CVE-2025-9708MEDIUMCVSS 6.8EG 6.82025-09-16
A vulnerability exists in the Kubernetes C# client where the certificate validation logic accepts properly constructed certificates from any Certificate Authority (CA) without properly verifying the trust chain. This flaw allows a maliciou…
- CVE-2025-6037MEDIUMCVSS 6.8EG 6.82025-08-01
Vault and Vault Enterprise (“Vault”) TLS certificate auth method did not correctly validate client certificates when configured with a non-CA certificate as [+trusted certificate+|https://developer.hashicorp.com/vault/api-docs/auth/cer…
- CVE-2025-30024MEDIUMCVSS 6.8EG 6.82025-07-11
The communication protocol used between client and server had a flaw that could be leveraged to execute a man in the middle attack.
- CVE-2024-49782MEDIUMCVSS 6.8EG 6.82025-02-20
IBM OpenPages with Watson 8.3 and 9.0 could allow a remote attacker to spoof mail server identity when using SSL/TLS security. An attacker could exploit this vulnerability to gain access to sensitive information disclosed through emai…
- CVE-2024-54147MEDIUMCVSS 6.8EG 6.82024-12-09
Altair is a GraphQL client for all platforms. Prior to version 8.0.5, Altair GraphQL Client's desktop app does not validate HTTPS certificates allowing a man-in-the-middle to intercept all requests. Any Altair users on untrusted networks (…
- CVE-2023-6058MEDIUMCVSS 6.8EG 6.82024-10-18
A vulnerability has been identified in Bitdefender Safepay's handling of HTTPS connections. The issue arises when the product blocks a connection due to an untrusted server certificate but allows the user to add the site to exceptions, res…
- CVE-2023-49567MEDIUMCVSS 6.8EG 6.82024-10-18
A vulnerability has been identified in the Bitdefender Total Security HTTPS scanning functionality where the product incorrectly checks the site's certificate, which allows an attacker to make MITM SSL connections to an arbitrary site. The…
- CVE-2024-31489MEDIUMCVSS 6.8EG 6.82024-09-10
AAn improper certificate validation vulnerability [CWE-295] in FortiClientWindows 7.2.0 through 7.2.2, 7.0.0 through 7.0.11, FortiClientLinux 7.2.0, 7.0.0 through 7.0.11 and FortiClientMac 7.0.0 through 7.0.11, 7.2.0 through 7.2.4 may all…
- CVE-2024-39771MEDIUMCVSS 6.8EG 6.82024-08-28
QBiC CLOUD CC-2L v1.1.30 and earlier and Safie One v1.8.2 and earlier do not properly validate certificates, which may allow a network-adjacent unauthenticated attacker to obtain and/or alter communications of the affected product via a ma…
- CVE-2024-33612MEDIUMCVSS 6.8EG 6.82024-05-08
An improper certificate validation vulnerability exists in BIG-IP Next Central Manager and may allow an attacker to impersonate an Instance Provider system. Note: Software versions which have reached End of Technical Support (EoTS) are …
- CVE-2021-3898MEDIUMCVSS 6.8EG 6.82022-04-22
Versions of Motorola Ready For and Motorola Device Help Android applications prior to 2021-04-08 do not properly verify the server certificate which could lead to the communication channel being accessible by an attacker.
- CVE-2022-21657MEDIUMCVSS 6.8EG 6.82022-02-22
Envoy is an open source edge and service proxy, designed for cloud-native applications. In affected versions Envoy does not restrict the set of certificates it accepts from the peer, either as a TLS client or a TLS server, to only those ce…
- CVE-2022-20034MEDIUMCVSS 6.8EG 6.82022-02-09
In Preloader XFLASH, there is a possible escalation of privilege due to an improper certificate validation. This could lead to local escalation of privilege for an attacker who has physical access to the device with no additional execution…
- CVE-2020-15260MEDIUMCVSS 6.8EG 6.82021-03-10
PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In version 2.10 and earlier, PJSIP transport can be reused if they hav…
- CVE-2021-20327MEDIUMCVSS 6.8EG 6.82021-02-25
A specific version of the Node.js mongodb-client-encryption module does not perform correct validation of the KMS server’s certificate. This vulnerability in combination with a privileged network position active MITM attack could result …
- CVE-2012-0955MEDIUMCVSS 6.8EG 6.82020-12-02
software-properties was vulnerable to a person-in-the-middle attack due to incorrect TLS certificate validation in softwareproperties/ppa.py. software-properties didn't check TLS certificates under python2 and only checked certificates und…
- CVE-2020-6781MEDIUMCVSS 6.8EG 6.82020-09-16
Improper certificate validation for certain connections in the Bosch Smart Home System App for iOS prior to version 9.17.1 potentially allows to intercept video contents by performing a man-in-the-middle attack.
- CVE-2020-24613MEDIUMCVSS 6.8EG 6.82020-08-24
wolfSSL before 4.5.0 mishandles TLS 1.3 server data in the WAIT_CERT_CR state, within SanityCheckTls13MsgReceived() in tls13.c. This is an incorrect implementation of the TLS 1.3 client state machine. This allows attackers in a privileged …
- CVE-2020-15720MEDIUMCVSS 6.8EG 6.82020-07-14
In Dogtag PKI through 10.8.3, the pki.client.PKIConnection class did not enable python-requests certificate validation. Since the verify parameter was hard-coded in all request functions, it was not possible to override the setting. As a r…
- CVE-2006-7246MEDIUMCVSS 6.8EG 6.82020-01-27
NetworkManager 0.9.x does not pin a certificate's subject to an ESSID when 802.11X authentication is used.
- CVE-2018-12205MEDIUMCVSS 6.8EG 6.82019-03-14
Improper certificate validation in Platform Sample/ Silicon Reference firmware for 8th Generation Intel(R) Core(tm) Processor, 7th Generation Intel(R) Core(tm) Processor may allow an unauthenticated user to potentially enable an escalation…
- CVE-2018-16261MEDIUMCVSS 6.8EG 6.82018-09-06
In Pulse Secure Pulse Desktop Client 5.3RX before 5.3R5 and 9.0R1, there is a Privilege Escalation Vulnerability with Dynamic Certificate Trust.
- CVE-2018-3927MEDIUMCVSS 6.8EG 6.82018-08-27
An exploitable information disclosure vulnerability exists in the crash handler of the hubCore binary of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. When hubCore crashes, Google Breakpad is used to record minidumps,…
- CVE-2017-2648MEDIUMCVSS 6.8EG 6.82018-07-27
It was found that jenkins-ssh-slaves-plugin before version 1.15 did not perform host key verification, thereby enabling Man-in-the-Middle attacks.
- CVE-2017-3182MEDIUMCVSS 6.8EG 6.82018-07-24
On the iOS platform, the ThreatMetrix SDK versions prior to 3.2 fail to validate SSL certificates provided by HTTPS connections, which may allow an attacker to perform a man-in-the-middle (MITM) attack. ThreatMetrix is a security library f…
- CVE-2015-4100MEDIUMCVSS 6.8EG 6.82017-12-21
Puppet Enterprise 3.7.x and 3.8.0 might allow remote authenticated users to manage certificates for arbitrary nodes by leveraging a client certificate trusted by the master, aka a "Certificate Authority Reverse Proxy Vulnerability."
- CVE-2022-0123MEDIUMCVSS 5.9EG 6.82022-03-28
An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. GitLab does not validate SSL certificates for some of external CI services which makes it possible to perform…
- CVE-2022-48306MEDIUMCVSS 5.7EG 6.82023-02-16
Improper Validation of Certificate with Host Mismatch vulnerability in Gotham Chat IRC helper of Palantir Gotham allows A malicious attacker in a privileged network position could abuse this to perform a man-in-the-middle attack. A success…
- CVE-2011-2874MEDIUMCVSS v2 6.8EG 6.82011-09-19
Google Chrome before 14.0.835.163 does not perform an expected pin operation for a self-signed certificate during a session, which has unspecified impact and remote attack vectors.
- CVE-2002-0862MEDIUMCVSS v2 6.8EG 6.82002-10-04
The (1) CertGetCertificateChain, (2) CertVerifyCertificateChainPolicy, and (3) WinVerifyTrust APIs within the CryptoAPI for Microsoft products including Microsoft Windows 98 through XP, Office for Mac, Internet Explorer for Mac, and Outloo…
- CVE-2024-14024MEDIUMCVSS 6.7EG 6.72026-03-11
An improper certificate validation vulnerability has been reported to affect Video Station. If an attacker gains local network access who have also gained an administrator account, they can then exploit the vulnerability to compromise the …
- CVE-2024-13956MEDIUMCVSS 6.7EG 6.72025-05-22
SSL Verification Bypass vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*.
- CVE-2025-30000MEDIUMCVSS 6.7EG 6.72025-04-08
A vulnerability has been identified in Siemens License Server (SLS) (All versions < V4.3). The affected application does not properly restrict permissions of the users. This could allow a lowly-privileged attacker to escalate their privile…
- CVE-2024-30134MEDIUMCVSS 6.7EG 6.72024-09-26
The HCL Traveler for Microsoft Outlook executable (HTMO.exe) is being flagged as potentially Malicious Software or an Unrecognized Application.
- CVE-2022-20071MEDIUMCVSS 6.7EG 6.72022-04-11
In ccu, there is a possible escalation of privilege due to a missing certificate validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is no needed for exploitation. Patch ID…
- CVE-2021-22278MEDIUMCVSS 6.7EG 6.72021-10-28
A certificate validation vulnerability in PCM600 Update Manager allows attacker to get unwanted software packages to be installed on computer which has PCM600 installed.
- CVE-2019-12000MEDIUMCVSS 6.6EG 6.62020-07-17
HPE has found a potential Remote Access Restriction Bypass in HPE MSE Msg Gw application E-LTU prior to version 3.2 when HTTPS is used between the USSD and an external USSD service logic application. Update to version 3.2 and update the HT…
Map vulnerabilities like CWE-295 to your infrastructure
EchelonGraph correlates every CVE — across CWE-295 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →