WhisperX tag archive

#wildcard-certificates

This page collects WhisperX intelligence signals tagged #wildcard-certificates. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-29 02:54:11 · GitHub Issues

1. rustls-webpki Name Constraint Bypass Exposes Wildcard Certificates to DNS Restriction Evasion

A critical validation flaw in the `rustls-webpki` cryptographic library allowed wildcard DNS names to bypass permitted subtree name constraints, potentially enabling certificates issued for `*.example.com` to assert names outside the authorized constraint scope. The vulnerability, tracked as RUSTSEC-2026-0099, affects ...