Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-1858

wget2 accepts a server certificate with incorrect Key Usage (KU) or Extended Key Usage (EKU). If the attackers compromise a certificate (with the associated private key) issued for a different purpose, they may be able to reuse it for TLS server authentication.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 1.1%
CVSS Severity
CVSS v3 Score 4.8
Products affected by CVE-2026-1858
  • Gnu » Wget2 » Version: Any
    cpe:2.3:a:gnu:wget2:*


Contact Us

Shodan ® - All rights reserved