During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th
Step CA is an online certificate authority for secure, automated certificate management for DevOps. Versions 0.30.0-rc6
A vulnerability was identified in Juju from version 3.2.0 until 3.6.19 and from version 4.0 until 4.0.4, where the inter
The Apache Traffic Server certifier plugin generates certificates based on attacker-controlled client SNI. This issue a
An issue in Automai BotManager v.25.2.0 allows a remote attacker to execute arbitrary code via the BotManager.exe compon
An improper certificate validation vulnerability exists in ToDesktop Builder v0.32.1 This vulnerability allows an unauth
Improper enforcement of the Disable password saving in vaults setting in the connection entry component in Devolutions
A vulnerability in the integration of single sign-on (SSO) with Control Hub in Cisco Webex Services could have allowed a
Sunshine is a self-hosted game stream host for Moonlight. In versions prior to 2026.516.143833, the client-certificate a
FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains multiple TLS certificate identity validation weaknesses in
An issue was discovered in openHiTLS 0.2.0 through 0.3.2. In the X.509 certificate chain verification, the basic constra
IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW9
The affected devices do not validate the server certificate when connecting to the SolaX Cloud MQTTS server hosted in th
A flaw was found in assisted-migration-agent. The application hardcodes insecure Transport Layer Security (TLS) connecti
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to impersonate the TNC policy server and mod
Alist is a file list program that supports multiple storages, powered by Gin and Solidjs. Prior to version 3.57.0, the a
Improper Input Validation vulnerability. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.14, from 10.1.0-
An issue pertaining to CWE-295: Improper Certificate Validation was discovered in Ayms node-To master. The application d
Missing hash/digest size and OID checks allow digests smaller than allowed when verifying ECDSA certificates, or smaller
Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and
In OCaml-TLS before 2.1.0, the client implementation does insufficient checks of the certificate provided by the server,
libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches
In epa4all, prior to version 2026-05-20, an attacker who can intercept the TLS connection between epa4all and the ePA ba
Improper TLS hostname verification vulnerability in Apache HttpComponents Client 5.4 or newer. HostnameVerificationPolic
erlang_quic is a pure Erlang QUIC implementation. Prior to version 1.4.4, the QUIC client did not authenticate the serve
A flaw was found in the managedcluster-import-controller. The Certificate Signing Request (CSR) auto-approval logic impr
ePA 3.x Integration implements the authorization workflow and writes Medical Information Objects to Germany's electronic
An Improper Certificate Validation in Ivanti EPMM before versions 12.6.1.1, 12.7.0.1, and 12.8.0.1 allows a remote unaut
NeuVector supports login authentication through OpenID Connect. However, the TLS verification (which verifies the remote
An Improper Certificate Validation vulnerability in TP-Link Tapo H100 v1 and Tapo P100 v1 allows an on-path attacker on
Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 4.6.2, there is a server-side re
A certificate validation vulnerability in Palo Alto Networks Autonomous Digital Experience Manager on Windows allows an
An improper certificate validation vulnerability in Ivanti Secure Access Client before 22.8R6 allows a remote unauthenti
Idira Vendor PAM - Self-Hosted Connector versions prior 1.1.100504 under specific conditions and configuration scenarios
Improper certificate validation in Azure Connected Machine Agent allows an unauthorized attacker to elevate privileges o
cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.37.2, when a cpp-httplib cl
The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. Prior to versions 4.19.3, 4.20.2, 5.0.
An attacker with network-level access between the SUSE Virtualization and Rancher Manager in SUSE Harvester before 1.8.
A vulnerability has been identified within Rancher Manager, where using self-signed CA certificates and passing the -ski
A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. WMCO establishe
An insufficient certificate validation in a privileged communication workflow, was identified in a GMS application 9.5.1
Errands before 46.2.10 does not verify TLS certificates for CalDAV servers.
A flaw was found in Open Cluster Management (OCM), the technology underlying Red Hat Advanced Cluster Management (ACM).
When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to w
SSL verification is disabled in the DNS Cluster system. This could allow for a malicious server to man-in-the-middle the
A flaw was found in gnutls. When validating certificates, an oversized Subject Alternative Name (SAN) could cause the va
Dancer::Plugin::Auth::Google versions before 0.08 for Perl have TLS verification disabled. The default user agent is in
A flaw was found in aap-gateway, a component of Ansible Automation Platform's Event-Driven Ansible (EDA). An unauthentic
A flaw was found in fog-kubevirt. This vulnerability allows a remote attacker to perform a Man-in-the-Middle (MITM) atta
A flaw was found in foreman_kubevirt. When configuring the connection to OpenShift, the system disables SSL verification
Frequently Asked Questions
What is CWE-295?
CWE-295 (CWE-295) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-295?
There are 300 CVE records associated with CWE-295 in our database. Of these, 27 are critical severity, 109 are high severity, and 108 are medium severity.
How can I protect against CWE-295 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-295 using AI-powered security agents.
Detect CWE-295 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-295 vulnerabilities across your infrastructure.
Get Started