Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-38666


Jenkins NS-ND Integration Performance Publisher Plugin 4.8.0.146 and earlier unconditionally disables SSL/TLS certificate and hostname validation for several features.


Published

2022-11-15T20:15:11.193

Last Modified

2025-04-30T16:15:22.393

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-295
  • Type: Secondary
    CWE-295

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application jenkins ns-nd_integration_performance_publisher ≤ 4.8.0.146 Yes

References