Description
Caddy before 0.10.13 mishandles TLS client authentication, as demonstrated by an authentication bypass caused by the lack of the StrictHostMatching mode.
Remediation
References
Related Vulnerabilities
WordPress Plugin Shoppable Images Multiple Vulnerabilities (1.0.0)
WordPress Plugin Haiku minimalist audio player Cross-Site Scripting (1.0.0)
MySQL CVE-2012-1688 Vulnerability (CVE-2012-1688)
WordPress Plugin GigPress Multiple Vulnerabilities (2.3.10)
WordPress 4.2.x Same Origin Method Execution (SOME) Vulnerability (4.2 - 4.2.7)