Intelligence View
CVE-2026-56850 | Node.js prior 22.23.1/24.18.0/26.5.0 HTTPS Agent certificate validation (WID-SEC-2026-2585)
A vulnerability was found in Node.js and classified as problematic. Affected by this vulnerability is an unknown functionality of the component HTTPS Agent. Such manipulation leads to improper certificate validation. This vulnerability is…
This vulnerability is documented as CVE-2026-56850. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - CVE-2026-56850 | Node.js prior 22.23.1/24.18.0/26.5.0 HTTPS Agent certificate validation (WID-SEC-2026-2585)
id: c6f68ee0-07f4-4b87-9db2-a5254282d478
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-24
logsource:
category: network_connection
product: any
detection:
selection:
CommandLine|contains:
- 'exploit'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-24"
description = "YARA Signature for "
strings:
$str = "CVE-2026-56850 | Node.js prior" ascii wide
condition:
any of them
}
SOCIAL SHARE CARD GENERATOR