CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100835

HIGHCVSS 7.4NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast before 1.16.0 is susceptible to remote attestation relay attacks. Contrast accepted any TEE attestation report that verified correctly and contained the expected firmware patch levels and software measurements, regardless of which machine produced it, so attestation was not bound to specifi

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-100835 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100835

HIGHCVSS 7.4NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast before 1.16.0 is susceptible to remote attestation relay attacks. Contrast accepted any TEE attestation report that verified correctly and contained the expected firmware patch levels and software measurements, regardless of which machine produced it, so attestation was not bound to specifi

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]