CVE-2023-30517

5.3MEDIUM

Jenkins NeuVector Vulnerability Scanner Plugin 1.22 and earlier unconditionally disables SSL/TLS certificate and hostname validation when connecting to a configured NeuVector Vulnerability Scanner ser

Published: 4/12/2023Updated: 2/7/2025

Description

Jenkins NeuVector Vulnerability Scanner Plugin 1.22 and earlier unconditionally disables SSL/TLS certificate and hostname validation when connecting to a configured NeuVector Vulnerability Scanner server.

AI AnalysisPowered by AI

Affected Products

jenkinsneuvector_vulnerability_scanner

References