wolfSSL
11 known vulnerabilities in wolfSSL, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-94417 CVSS 2.3 low When an application enables both OCSP and CRL revocation checking on one WOLFSSL_CTX or certificate manager, wolfSSL skips the CRL check…
- CVE-2026-93304 CVSS 6.3 medium A (D)TLS 1.2 client can accept a ChangeCipherSpec message before it has sent its ClientKeyExchange. No master secret has been derived at…
- CVE-2026-93302 CVSS 8.3 high MatchTrustedPeer ignores the public key used, leading to forged CA clones passing verification. Affected builds are any that enable the…
- CVE-2026-89136 CVSS 8.3 high When using RPK (Raw Public Key), the client side of a TLS 1.2, 1.3 and DTLS 1.2 connection could accept an unsolicited…
- CVE-2026-89135 CVSS 6.3 medium A failed X509_verify_cert call permanently plants an unverified attacker CA in the shared CertManager, bypassing certificate validation in…
- CVE-2026-89134 CVSS 6.3 medium A certificate with no dNSName SAN but another SAN type present (e.g. registeredID or iPAddress) bypassed the Subject CN dNSName…
- CVE-2026-89133 CVSS 6.3 medium wolfSSL versions 5.9.2 and earlier contain a flaw in the X.509 certificate validation logic where it fails to properly enforce…
- CVE-2026-89102 CVSS 8.3 high In wolfSSL versions 5.7.2 through 5.9.2 there is a client-side implementation flaw in RFC 6961, multiple OCSP response stapling, which can…
- CVE-2026-15442 CVSS 2.3 low In all builds that make use of (D)TLS, including default builds, there is a series of conditional states during the TLS shutdown which…
- CVE-2026-94419 CVSS 2.3 low Without NO_SESSION_CACHE_REF, wolfSSL_get_session() does not return a session object but a ClientSession reference of the form {row…
- CVE-2026-94418 CVSS 2.3 low Under WOLFSSL_SMALL_CERT_VERIFY, ProcessPeerCertParse() runs the certificate signature check separately from the parse to keep peak memory…