iPAddress name constraints bypass when WOLFSSL_IP_ALT_NAME is not defined. IP address name constraints are not enforced in that configuration, allowing a certificate to bypass an issuing CA's IP address constraints.CreditsAnkur Tyagi of Cisco Talos (TALOS-2026-2409)Referenceshttps://github.com/wolfSSL/wolfssl/pull/10354https://www.wolfssl.com/docs/security-vulnerabilities/