CVE-2026-95210: Critical severity GNU GnuTLS vulnerability
Published Oct 8, 2026
·Updated
Improper certificate validation in gnutls v3.8.13 causes the application to accept certificates containing invalid extensions.
Affected Software
1 affected component
GNU GnuTLS=3.8.13
Event History
Oct 8, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:18 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Is the affected version range known?
The available information explicitly identifies GNU GnuTLS version 3.8.13. It does not provide an affected version range or a fixed version.