Beveiligingsadvies

CVE-2026-17039

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-24 15:12:57
Laatst bijgewerkt 2026-07-25 00:53:43
Toegewezen door redhat
CVSS-score 3.1
Status PUBLISHED

Beschrijving

A flaw was found in pki-core. The certificate authority (CA) renewal request path does not perform the realm-based authorization check that the enrollment path performs, allowing an authenticated user entitled to one realm to cause a certificate belonging to a different realm to be renewed without that realm's authorization.