Skip to content

CVE-2026-42784

CVE

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
September 17, 2026
Last Seen
September 17, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical vulnerability (CVE-2026-42784) was discovered in the sequoia-openpgp library, affecting its ability to correctly infer key flags for older certificates. This flaw allows attackers to bypass back-signature checks, enabling them to bind arbitrary subkeys to their own certificates and forge...

Public Exploits

Checking GitHub for proof-of-concept code…