CVE-2026-89422

CVE-2026-89422 published: Key Exchange without Entity Authentication vulnerability in Erlang/OTP ssl allows a peer that answers a TLS 1.3 client connection to impersonate the intended server. A pre_shared_key extension in the ServerHello that the client never offered causes the clie...

View full NVD advisory → ← Back to CVE watch