CVE WATCH / VULNERABILITY DETAIL

CVE-2026-89102

UNKNOWNCVSS 0NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

In wolfSSL versions 5.7.2 through 5.9.2 there is a client-side implementation flaw in RFC 6961, multiple OCSP response stapling, which can lead to certificate forgery. When a wolfSSL client enables OCSP stapling with the HAVE_CERTIFICATE_STATUS_REQUEST_V2 feature and calls wolfSSL_UseOCSPStaplingV2(

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-89102 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-89102

UNKNOWNCVSS 0NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

In wolfSSL versions 5.7.2 through 5.9.2 there is a client-side implementation flaw in RFC 6961, multiple OCSP response stapling, which can lead to certificate forgery. When a wolfSSL client enables OCSP stapling with the HAVE_CERTIFICATE_STATUS_REQUEST_V2 feature and calls wolfSSL_UseOCSPStaplingV2(

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]