Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2

Количество 2

nvd логотип

CVE-2020-1929

больше 6 лет назад

The Apache Beam MongoDB connector in versions 2.10.0 to 2.16.0 has an option to disable SSL trust verification. However this configuration is not respected and the certificate verification disables trust verification in every case. This exclusion also gets registered globally which disables trust checking for any code running in the same JVM.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2m7g-9q74-9m3q

около 6 лет назад

Improper Certificate Validation in Apache Beam

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-1929

The Apache Beam MongoDB connector in versions 2.10.0 to 2.16.0 has an option to disable SSL trust verification. However this configuration is not respected and the certificate verification disables trust verification in every case. This exclusion also gets registered globally which disables trust checking for any code running in the same JVM.

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
github логотип
GHSA-2m7g-9q74-9m3q

Improper Certificate Validation in Apache Beam

CVSS3: 7.5
1%
Низкий
около 6 лет назад

Уязвимостей на страницу