Known Vulnerabilities for Certificates by Smallstep
Listed below are 10 of the newest known vulnerabilities associated with "Certificates" by "Smallstep".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-48697 json | FastNetMon Community Edition through 1.2.9 does not verify TLS certificates on outbound HTTPS connections. The execute_web_re... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-47107 json | Windmill prior to 1.703.2 contains an incorrect default permissions vulnerability in nsjail sandbox configuration files where... | Not Provided | 2026-05-19 | 2026-05-19 |
| CVE-2026-46685 json | RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, when RUSTFS_CORS_ALLOWED_ORIGINS is unset... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-45615 json | mouse07410/asn1c is an ASN.1 compiler. In 1.4 and earlier, a memory safety vulnerability was identified in the OER decoding s... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-44213 json | The OpenTelemetry.Exporter.Instana exports telemetry to Instana backend. Prior to 1.1.0, the OpenTelemetry.Exporter.Instana N... | Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-44167 json | phpseclib is a PHP secure communications library. Prior to 1.0.29, 2.0.54, and 3.0.52, anyone loading untrusted ASN1 files (e... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-42790 json | Improper Certificate Validation vulnerability in Erlang OTP public_key (pubkey_cert and public_key modules) allows a DNS name... | Not Provided | 2026-05-27 | 2026-05-28 |
| CVE-2026-42789 json | Improper Following of a Certificate's Chain of Trust vulnerability in Erlang OTP public_key (pubkey_cert module) allows a non... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-42312 json | pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the set_config_value() API meth... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-42225 json | PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, on GnuTLS builds, the S... | Not Provided | 2026-05-07 | 2026-05-08 |