With TLS 1.2 connections a client can use any digest,...
Low severity
Unreviewed
Published
Nov 22, 2025
to the GitHub Advisory Database
•
Updated Dec 4, 2025
Description
Published by the National Vulnerability Database
Nov 22, 2025
Published to the GitHub Advisory Database
Nov 22, 2025
Last updated
Dec 4, 2025
With TLS 1.2 connections a client can use any digest, specifically a weaker digest that is supported, rather than those in the CertificateRequest.
References