LOWVulnerability

CVE-2026-76244

stigmem-node contains an insecure default configuration vulnerability that allows federation traffic to traverse networks without mTLS protection when non-loopback endpoints are enabled. Operators who explicitly disabled mTLS while binding federation to non-loopback addresses expose federation traffic to cleartext interception and man-in-the-middle attacks.

Properties

epss_score
0.00216
cve_id
CVE-2026-76244
signal_observed_at
2026-09-11T21:54:11+00:00
published_at
2026-08-19T14:17:56.827
last_modified
2026-09-11T18:28:15.520
epss_percentile
0.12017

Related Entities (3)

ENRICHED_BY (1)

[Source]FIRST EPSS

HAS_WEAKNESS (1)

[Weakness]Cleartext Transmission of Sensitive Information

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-76244 — Ninja Signal Threat Intelligence | Ninja Signal