Loading HuntDB...

GHSA-gv3v-x3f3-7fxm

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

When curl is told to use the Certificate Status Request TLS extension, often referred to as OCSP stapling, to verify that the server certificate is valid, it might fail to detect some OCSP problems and instead wrongly consider the response as fine. If the returned status reports another error than 'revoked' (like for example 'unauthorized') it is not treated as a bad certficate.

Related CVEs

Key Information

GHSA ID
GHSA-gv3v-x3f3-7fxm
Published
September 11, 2024 12:30 PM
Last Modified
July 30, 2025 9:31 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 15, 2025 6:32 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.