CVE-2023-35142
8.1HIGHJenkins Checkmarx Plugin 2022.4.3 and earlier disables SSL/TLS validation for connections to the Checkmarx server by default.
Publicado: 6/14/2023Actualizado: 1/2/2025
Descripción
Jenkins Checkmarx Plugin 2022.4.3 and earlier disables SSL/TLS validation for connections to the Checkmarx server by default.
Análisis IAImpulsado por IA
Productos Afectados
jenkinscheckmarx
Referencias
- http://www.openwall.com/lists/oss-security/2023/06/14/5Mailing ListThird Party Advisory
- https://www.jenkins.io/security/advisory/2023-06-14/#SECURITY-2870Vendor Advisory
- http://www.openwall.com/lists/oss-security/2023/06/14/5Mailing ListThird Party Advisory
- https://www.jenkins.io/security/advisory/2023-06-14/#SECURITY-2870Vendor Advisory