LOWVulnerability

CVE-2026-58062

In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked certificate. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).

Properties

cve_id
CVE-2026-58062
published_at
2026-08-03T03:16:45.640
last_modified
2026-08-04T14:50:12.360

Related Entities (2)

DESCRIBED_BY (1)

[Source]NVD

HAS_WEAKNESS (1)

[Weakness]Improper Certificate Validation

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-58062 — Ninja Signal Threat Intelligence | Ninja Signal