A vulnerability identified as problematic has been detected in crypto-x509 up to 1.25.10/1.26.3 on Go. This vulnerability affects the function VerifyHostname. This manipulation causes inefficient algorithmic complexity.

This vulnerability is handled as CVE-2026-27145. The attack can be initiated remotely. There is not any exploit available.

You should upgrade the affected component.