NA

CVE-2023-30516

Published: 12/04/2023 Updated: 21/04/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Jenkins Image Tag Parameter Plugin 2.0 improperly introduces an option to opt out of SSL/TLS certificate validation when connecting to Docker registries, resulting in job configurations using Image Tag Parameters that were created prior to 2.0 having SSL/TLS certificate validation disabled by default.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins image tag parameter