High severity7.5OSV Advisory· Published Jun 25, 2026· Updated Jun 27, 2026
CVE-2026-6731
CVE-2026-6731
Description
X.509 name constraint bypass via the Subject Common Name when treated as a DNS-type name. A certificate whose Subject CN violates an issuing CA's DNS name constraints could be accepted.
Affected products
3Patches
Vulnerability mechanics
References
2- github.com/wolfSSL/wolfssl/pull/10223nvdIssue TrackingPatch
- www.wolfssl.com/docs/security-vulnerabilities/nvdVendor Advisory
News mentions
0No linked articles in our index yet.