CWE-298: Improper Validation of Certificate Expiration
A certificate expiration is not validated or is incorrectly validated.
6 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2025-61736 — iSTAR- Improper Validation of Certificate Expiration
- CVE-2025-4384 — Certificate validity not properly verified
- CVE-2025-59036 — Infrahub allows authentication with deleted and expired API tokens
- CVE-2026-86231 — mwiede jsch KnownHosts.java getRevokedKeys improper check for certificate revocation
- CVE-2024-1248 — Role Overwriting via Silent JIT Provisioning in Multiple WSO2 Products Enables Privilege Escalation
Recently published
- CVE-2026-86231 — mwiede jsch KnownHosts.java getRevokedKeys improper check for certificate revocation
- CVE-2024-1248 — Role Overwriting via Silent JIT Provisioning in Multiple WSO2 Products Enables Privilege Escalation
- CVE-2025-61736 — iSTAR- Improper Validation of Certificate Expiration
- CVE-2025-59036 — Infrahub allows authentication with deleted and expired API tokens
- CVE-2025-4384 — Certificate validity not properly verified