CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.6. See the original NVD description below for full technical details.
CVE
CVE-2026-6899
Severity
MEDIUM
CVSS
5.6
EPSS
0.11%
Original NVD Description
Check for certificate revocation only considers the first matching CRL and ignores other valid CRLs of the same CA in the CycloneCrypto cryptographic wrapper of S2OPC library. It might allow connection between an OPC UA client and server using a revoked certificate.