Crypto/x509
This hub aggregates every CVE we track for Crypto/x509, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
14
CVEs tracked
0
Critical
9
High
0
In CISA KEV
Severity distribution
HIGH9MEDIUM5
Monthly trend
0
0
0
0
2
0
0
0
0
1
0
0
0
2
0
2
0
0
2
3
0
1
0
0
2024-092026-08
Latest CVEs
The 14 most recently published vulnerabilities affecting Crypto/x509.
- CVE-2026-27145Inefficient candidate hostname parsing in crypto/x5096.5
- CVE-2026-32281Inefficient policy validation in crypto/x5097.5
- CVE-2026-32280Unexpected work during chain building in crypto/x5097.5
- CVE-2026-33810Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x5098.2
- CVE-2026-27138Panic in name constraint checking for malformed certificates in crypto/x5095.9
- CVE-2026-27137Incorrect enforcement of email constraints in crypto/x5097.5
- CVE-2025-61727Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x5096.5
- CVE-2025-61729Excessive resource consumption when printing error string for host certificate validation in crypto/x5097.5
- CVE-2025-58188Panic when validating certificates with DSA public keys in crypto/x5097.5
- CVE-2025-58187Quadratic complexity when checking name constraints in crypto/x5097.5
- CVE-2025-22874Usage of ExtKeyUsageAny disables policy validation in crypto/x5097.5
- CVE-2025-22865ParsePKCS1PrivateKey panic with partial keys in crypto/x5097.5
- CVE-2024-45341Usage of IPv6 zone IDs can bypass URI name constraints in crypto/x5096.1
- CVE-2024-24783Verify panics on certificates with an unknown public key algorithm in crypto/x5095.9
Product normalization is registry-driven with AI assist and human review. How it works