Security Advisory

CVE-2026-6860

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-06 09:55:12
Last updated 2026-05-12 20:29:09
Assigner eclipse
CVSS score 6.9
State PUBLISHED

Description

A TCP client can perform a TLS handshake and present the server name extension with a server name that is accepted by a server wildcard name, e.g. if the server is configured with a certificate accepting *.example.com, any XYZ.example.com where xyz is a valid name can be used.