An attacker can bypass authorization checks and force a Step CA ACME or SCEP provisioner to create certificates without completing certain protocol authorization checks.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-44005.json"