Логотип exploitDog
bind:CVE-2024-25141
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-25141

Количество 2

Количество 2

nvd логотип

CVE-2024-25141

почти 2 года назад

When ssl was enabled for Mongo Hook, default settings included "allow_insecure" which caused that certificates were not validated. This was unexpected and undocumented. Users are recommended to upgrade to version 4.0.0, which fixes this issue.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-x5pm-h33q-cjrw

почти 2 года назад

Improper Certificate Validation in apache airflow mongo hook

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-25141

When ssl was enabled for Mongo Hook, default settings included "allow_insecure" which caused that certificates were not validated. This was unexpected and undocumented. Users are recommended to upgrade to version 4.0.0, which fixes this issue.

CVSS3: 9.1
0%
Низкий
почти 2 года назад
github логотип
GHSA-x5pm-h33q-cjrw

Improper Certificate Validation in apache airflow mongo hook

CVSS3: 9.1
0%
Низкий
почти 2 года назад

Уязвимостей на страницу