HTTP::Tiny before 0.083, a Perl core module since 5.13.9 and available standalone on CPAN, has an insecure default TLS configuration where users must opt in to verify certificates.
2023-04-29T00:15:09.083
2025-01-30T20:15:32.297
Modified
CVSSv3.1: 8.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | http\ | \ | < 0.083 | Yes |
Application | perl | perl | < 5.38.0 | Yes |