Caddy Web Server Improper Authentication Vulnerability - CVE-2018-21246 - Vulnerability Database

Caddy Web Server Improper Authentication Vulnerability - CVE-2018-21246

Critical
Reference: CVE-2018-21246
Title: Caddy Web Server Improper Authentication Vulnerability
Overview:

Caddy before 0.10.13 mishandles TLS client authentication as demonstrated by an authentication bypass caused by the lack of the StrictHostMatching mode.