CVE-2026-34477
Medium Severity
Description
The fix for CVE-2025-68161 https://logging.apache.org/security.html#CVE-2025-68161 was incomplete: it addressed hostname verification only when enabled via the...
Related Vulnerabilities
- CVE-2026-34424: Smart Slider 3 Pro version 3.5.1.35 for WordPress and Joomla contains a multi-stage remote access to CRITICAL
- CVE-2026-35652: OpenClaw before 2026.3.22 contains an authorization bypass vulnerability in interactive callback dis MEDIUM
- CVE-2026-23900: Various stored XSS vulnerabilities in the maps- and icon rendering logic in Phoca Maps component 5.0 MEDIUM
- CVE-2026-5503: In TLSX_EchChangeSNI, the ctx->extensions branch set extensions unconditionally even when TLSX_Find MEDIUM
- CVE-2026-5504: A padding oracle exists in wolfSSL's PKCS7 CBC decryption that could allow an attacker to recover pl MEDIUM
Related Coverage
Threat Actors