CVE-2026-70666 | Netflix Lemur up to 1.9.2 ACME Client /api/1/authorities setup_acme_client_no_retry acme_url certificate validation
A vulnerability categorized as problematic has been discovered in Netflix Lemur up to 1.9.2. This affects the function setup_acme_client_no_retry of the file /api/1/authorities of the component ACME Client. The manipulation of the argument acme_url results in improper certificate validation.
This vulnerability was named CVE-2026-70666. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More