CVE-2026-12490 - Bypass of client certificate verification with transfer over TLS
CVE ID :CVE-2026-12490 Published : June 25, 2026, 5:24 a.m. | 1 hour, 46 minutes ago Description :When a provide-xfr is given with a tls-auth-name, a secondary requesting a transfer should provide a client certificate with that name. However, no client certificate is needed when the request...