HIGHVulnerability

CVE-2026-8286

A vulnerability exists where a new transfer that uses STARTTLS to upgrade the connection might reuse an existing live connection even though the TLS configuration mismatches so it should not.

Properties

severity
HIGH
score
8.1
epss_score
0.00309
cve_id
CVE-2026-8286
signal_observed_at
2026-09-15T07:22:04+00:00
vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
published_at
2026-07-03T07:16:24.453
last_modified
2026-09-15T07:16:31.617
epss_percentile
0.23601

Related Entities (4)

ENRICHED_BY (1)

[Source]FIRST EPSS

HAS_WEAKNESS (1)

[Weakness]Improper Certificate Validation

DESCRIBED_BY (1)

[Source]NVD

AFFECTS_PRODUCT (1)

[Product]

Explore deeper with Ninja Signal's threat intelligence graph