What is CVE-2026-70667?
A critical vulnerability was discovered in the Lemur TLS certificate management system. Prior to version 1.9.3, the `_validate_revocation_url` function in `lemur/certificates/verify.py` followed HTTP redirects during CRL/OCSP requests without validating the new location. This could allow bypassing revocation checks by redirecting requests to arbitrary destinations.
Azərbaycanca: Lemur TLS sertifikat idarəetmə sistemində kritik boşluq aşkarlanıb. 1.9.3 versiyasından əvvəl, 'lemur/certificates/verify.py' faylındakı `_validate_revocation_url` funksiyası CRL/OCSP sorğuları göndərərkən HTTP `redirect`-ləri yoxlamadan izləyir. Bu, təhlükəsizlik yoxlamasının yan keçilməsinə və saxta ləğv siyahısı mənbələrinə yönləndirməyə səbəb ola bilər.
FAQ2
In which function was the CVE-2026-70667 vulnerability discovered in the Lemur TLS certificate management system?
This vulnerability was discovered in the `_validate_revocation_url` function within the 'lemur/certificates/verify.py' file.
How can the security check be bypassed using the CVE-2026-70667 vulnerability?
The security check can be bypassed because HTTP redirects during CRL/OCSP requests are followed without validation, which can redirect requests to arbitrary destinations and fake revocation sources.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.