CVE-2026-92868

An improper certificate validation vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to bypass client certificate authentication.

  • Published Sep 30, 2026
  • CVSS 6.9 medium
  • 0.2% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-92868 at the National Vulnerability Database