CWE-295

Improper Certificate Validation

Parent: CWE-287 - Improper Authentication

The product does not validate, or incorrectly validates, a certificate.

1,335 vulnerabilities with CWE-295
CVE-2025-14819 MEDIUM
Haxx Curl < 8.18.0 - Improper Certificate Validation
CVSS 5.3
CVE-2025-13034 MEDIUM
Haxx Curl < 8.18.0 - Improper Certificate Validation
CVSS 5.9
CVE-2025-69412 LOW
KDE messagelib <25.11.90 - Info Disclosure
CVSS 3.4
CVE-2025-52598 LOW
Hanwhavision Xno-9082rz Firmware - Improper Certificate Validation
CVSS 3.7
CVE-2025-68161 MEDIUM
Apache Log4j Core <2.25.2 - SSL Verification Bypass
CVSS 4.8
CVE-2025-14022 HIGH
Line < 15.4.0 - Improper Certificate Validation
CVSS 7.7
CVE-2025-13052 MEDIUM
Asustor Data Master < 4.3.3.ROF1 - Improper Certificate Validation
CVSS 5.9
CVE-2025-65291 HIGH
Aqara Hub M2 Firmware - Improper Certificate Validation
CVSS 7.4
CVE-2025-65290 HIGH
Aqara Hub M2 Firmware - Improper Certificate Validation
CVSS 7.4
CVE-2025-65830 CRITICAL
Mobile App - Info Disclosure
CVSS 9.1
CVE-2025-40801 HIGH
COMOS V10.6 - Info Disclosure
CVSS 8.1
CVE-2025-40800 HIGH
COMOS V10.6- Simcenter Femap - SSL/TLS Validation
CVSS 7.4
CVE-2025-66491 MEDIUM
Traefik <3.6.2 - Man-in-the-Middle
CVSS 5.9
CVE-2025-61727 MEDIUM
GO < 1.24.11 - Improper Certificate Validation
CVSS 6.5
CVE-2025-61729 HIGH
GO < 1.24.11 - Improper Certificate Validation
CVSS 7.5
CVE-2025-12893 MEDIUM
MongoDB - Info Disclosure
CVSS 4.2
CVE-2025-44018 HIGH
GL-Inet GL-AXT1800 4.7.0 - Firmware Downgrade
CVSS 8.3
CVE-2025-65083 LOW
GoSign Desktop <2.4.1 - Info Disclosure
CVSS 3.2
CVE-2025-60022 MEDIUM
デジラアプリ <80.10.00 - MITM
CVSS 4.8
CVE-2025-30669 MEDIUM
Zoom Meeting Software Development Kit < 6.5.10 - Improper Certificate Validation
CVSS 4.8
CVE-2025-12765 HIGH
pgAdmin <= 9.9 - Auth Bypass
CVSS 7.5
CVE-2025-12047 MEDIUM
Lenovo Scanner pro - Info Disclosure
CVSS 5.3
CVE-2025-10495 HIGH
Lenovo Client Apps - RCE
CVSS 7.5
CVE-2025-40744 HIGH
Solid Edge SE2025 <V225.0 Update 11 - Man in the Middle
CVSS 7.5
CVE-2025-12943 HIGH
NETGEAR RAX30/RAXE300 - Command Injection
CVSS 7.5
Details
Vulnerabilities 1,335