Описание
goframe v2.7.2 is configured to skip TLS certificate verification, possibly allowing attackers to execute a man-in-the-middle attack via the gclient component.
EPSS
Процентиль: 19%
0.00061
Низкий
7.1 High
CVSS3
Дефекты
CWE-599
Связанные уязвимости
github
больше 1 года назад
goframe v2.7.2 is configured to skip TLS certificate verification, possibly allowing attackers to execute a man-in-the-middle attack via the gclient component.
EPSS
Процентиль: 19%
0.00061
Низкий
7.1 High
CVSS3
Дефекты
CWE-599