You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/io.netty/netty-handler/4.1.99.Final/742693761d7ea4c038bccfda96bb38194720b80d/netty-handler-4.1.99.Final.jar
A vulnerability was found in the Hot Rod client. This security issue occurs as the Hot Rod client does not enable hostname validation when using TLS, possibly resulting in a man-in-the-middle (MITM) attack.
CVE-2023-4586 - Medium Severity Vulnerability
Library home page: https://netty.io/
Path to dependency file: /build.gradle
Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/io.netty/netty-handler/4.1.99.Final/742693761d7ea4c038bccfda96bb38194720b80d/netty-handler-4.1.99.Final.jar
Dependency Hierarchy:
Found in HEAD commit: 7b1a1987c559e669022d324c1186558446e7f668
Found in base branch: main
A vulnerability was found in the Hot Rod client. This security issue occurs as the Hot Rod client does not enable hostname validation when using TLS, possibly resulting in a man-in-the-middle (MITM) attack.
Publish Date: 2023-10-04
URL: CVE-2023-4586
Base Score Metrics:
The text was updated successfully, but these errors were encountered: