CVE-2026-42508
CVE Details
Visit the official vulnerability details page for CVE-2026-42508 to learn more.
Initial Publication
05/22/2026
Last Update
08/06/2026
Third Party Dependency
golang.org/x/crypto
NIST CVE Summary
Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and 'key.SignatureKey' are checked for @revoked.
CVE Severity
Our Official Summary
Investigation is ongoing to determine how this vulnerability affects our products.
Status
Modified
Affected Products & Versions
| Version | PaletteAI | PaletteAI VerteX |
|---|---|---|
| 1.2.1 | ⚠️ Impacted | ⚠️ Impacted |
| 1.1.8 | ⚠️ Impacted | ⚠️ Impacted |
Revision History
No revisions available.