Description
Jenkins ElectricFlow Plugin 1.1.5 and earlier disabled SSL/TLS and hostname verification globally for the Jenkins master JVM when MultipartUtility.java is used to upload files.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5828 | Jenkins ElectricFlow Plugin 1.1.5 and earlier disabled SSL/TLS and hostname verification globally for the Jenkins master JVM when MultipartUtility.java is used to upload files. |
Github GHSA |
GHSA-xmqv-pfw7-qmj7 | Jenkins ElectricFlow Plugin globally and unconditionally disabled SSL/TLS certificate validation |
References
History
No history.
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2024-08-04T22:17:20.486Z
Reserved: 2019-03-29T00:00:00.000Z
Link: CVE-2019-10334
No data.
Status : Modified
Published: 2019-06-11T14:29:00.947
Modified: 2024-11-21T04:18:54.773
Link: CVE-2019-10334
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA