CVE-2019-10334
CVSS v3.0
6.5 (Medium)
CVSS v2.0
5.8 (Medium)
EPSS
0.32 % (71th)
Affected Products
1
Advisories
2
Jenkins ElectricFlow Plugin 1.1.5 and earlier disabled SSL/TLS and hostname verification globally for the Jenkins master JVM when MultipartUtility.java is used to upload files.
Weaknesses
- CWE-295
- Improper Certificate Validation
- CVE Status
- PUBLISHED
- CNA
- Jenkins Project
- Published Date
-
2019-06-11 14:29:00
(5 years ago) - Updated Date
-
2023-10-25 18:16:16
(10 months ago)
Affected Products
Loading...
Loading...
Loading...
Configuration #1
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...