VYPR

erlang_quic

by Benoitc

CVEs (1)

  • CVE-2026-49457CriAug 14, 2026
    risk 0.59cvss 9.1epss

    erlang_quic is a pure Erlang QUIC implementation. Prior to version 1.4.4, the QUIC client did not authenticate the server during the TLS 1.3 handshake. The CertificateVerify signature was not checked, the certificate chain was not validated, and the hostname was not compared…