CVE-2026-67693

High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue in gnutls v.3.8.13 allows an attacker to obtain sensitive information via failing to reject end-entity X.509 certificates that contain a contradictory combination of Key Usage (KU) and Extended Key Usage (EKU)

Published 2026-10-08. Last modified 2026-10-09.