216.73.216.6

CVE-2026-6860

· Published 06/05/2026 10:16 · Modified 06/05/2026 16:16

Labels: CVE-2026-6860 2026-05-06CVE-2026-6860[email protected]

Essential information

Published
06/05/2026 10:16
Modified
06/05/2026 16:16
Author
Creator
CVSS
6.9 MEDIUM (v3) 6.9 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A TCP client can perform a TLS handshake and present the server name extension with a server name that is accepted by a server wildcard name, e.g. if the server is configured with a certificate accepting *.example.com, any XYZ.example.com where xyz is a valid name can be used.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
eclipse / tcp client cpe:2.3:a:eclipse:tcp_client:*:*:*:*:*:*:*:*
eclipse / tls cpe:2.3:a:eclipse:tls:*:*:*:*:*:*:*:*

References