The product communicates with a host that provides a certificate, but the product does not properly ensure that the certificate is actually associated with that host.
Volume of CVEs assigned to CWE-297 and their average CVSS base score over time.
Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.
58 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-15925CRITICAL Improper TLS hostname verification in Snowflake Connector for Python versions prior to 4.7.1 and 3.18.1 may have allowed a network-positioned attacker to bypass certificate hostnam | Jul 16, 2026 | 9.2 | 39 | NO | NO |
CVE-2026-41603HIGH Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift.
This issue affects Apache Thrift: before 0.23.0.
Users are recommended to upgrade to version | Apr 28, 2026 | 8.2 | 37 | NO | NO |
CVE-2026-35563HIGH It was identified that the LDAP client implementation in version 2.1.7 does not verify if the server certificate matches the intended LDAP
hostname. While the underlying code vali | Jun 1, 2026 | 8.5 | 35 | NO | NO |
CVE-2026-43869HIGH Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift.
This issue affects Apache Thrift: before 0.23.0.
Users are recommended to upgrade to version | May 5, 2026 | 7.3 | 34 | NO | NO |
CVE-2025-68637CRITICAL The Uniffle HTTP client is configured to trust all SSL certificates and
disables hostname verification by default. This insecure configuration
exposes all REST API communication b | Jan 7, 2026 | 9.1 | 32 | NO | NO |
CVE-2026-42790HIGH Improper Certificate Validation vulnerability in Erlang OTP public_key (pubkey_cert and public_key modules) allows a DNS nameConstraints bypass via subject CommonName fallback in T | May 27, 2026 | 8.1 | 31 | NO | NO |
CVE-2026-22747HIGH Vulnerability in Spring Spring Security. SubjectX500PrincipalExtractor does not correctly handle certain malformed X.509 certificate CN values, which can lead to reading the wrong | Apr 22, 2026 | 8.1 | 31 | NO | NO |
CVE-2026-54275HIGH AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, the server_hostname TLS SNI check can be bypassed when an existing connection is re | Jun 22, 2026 | 7.5 | 30 | NO | NO |
CVE-2025-46408CRITICAL An issue was discovered in the methods push.lite.avtech.com.AvtechLib.GetHttpsResponse and push.lite.avtech.com.Push_HttpService.getNewHttpClient in AVTECH EagleEyes 2.0.0. The met | Sep 15, 2025 | 9.8 | 29 | NO | NO |
CVE-2026-44393HIGH An issue was discovered in OpenStack oslo.messaging 1.0.0 through 17.3.0. The oslo.messaging RabbitMQ driver does not perform TLS hostname verification when connecting to the messa | Jun 4, 2026 | 7.4 | 28 | NO | NO |
Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.
Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.
Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.