CVE-2026-107660 | FFmpeg up to 8.1.2/9.0.1 libavformat tls_mbedtls.c tls_open certificate validation
A vulnerability classified as problematic has been found in FFmpeg up to 8.1.2/9.0.1. This issue affects the function tls_open of the file libavformat/tls_mbedtls.c of the component libavformat. The manipulation leads to improper certificate validation.
This vulnerability is listed as CVE-2026-107660. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More