CVE-2026-63576 | Legion of the Bouncy Castle bc-csharp up to 2.6.x PkixNameConstraintValidator PkixNameConstraintValidator.ExtractHostFromURL certificate validation

SecurityVulns

A vulnerability, which was classified as problematic, has been found in Legion of the Bouncy Castle bc-csharp up to 2.6.x. The affected element is the function PkixNameConstraintValidator.ExtractHostFromURL of the component PkixNameConstraintValidator. Performing a manipulation results in improper certificate validation.

This vulnerability is identified as CVE-2026-63576. The attack can be initiated remotely. There is not any exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More