Tag
high
advisory
ForgeKeep Nebula-Mesh Certificate Revocation Bypass Vulnerability
2 TTPsA high-severity vulnerability, CVE-2026-61699, in ForgeKeep's nebula-mesh allows compromised or offboarded hosts to bypass certificate revocation, enabling attackers to maintain full mesh network access for up to 365 days despite operator actions.
nebula-mesh
certificate-revocation
network-overlay
defense-evasion
persistence
network
2t
high
advisory
CVE-2026-59818 etcd: gRPC client listener does not enforce certificate revocation
1 CVEThe etcd gRPC client listener is affected by CVE-2026-59818, a vulnerability where it fails to properly enforce Certificate Revocation Lists (CRLs) when the `--client-crl-file` flag is used, potentially allowing clients with revoked certificates to bypass authentication and gain unauthorized access to etcd instances.
etcd
vulnerability
grpc
authentication-bypass
certificate-revocation
1c