Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1171 | Jenkins Image Tag Parameter Plugin 2.0 improperly introduces an option to opt out of SSL/TLS certificate validation when connecting to Docker registries, resulting in job configurations using Image Tag Parameters that were created before 2.0 having SSL/TLS certificate validation disabled by default. |
Github GHSA |
GHSA-38jc-2rwx-qgxr | Jenkins Image Tag Parameter Plugin improperly introduces option to opt out of SSL/TLS certificate validation |
Fri, 07 Feb 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2025-02-07T19:02:14.079Z
Reserved: 2023-04-12T08:40:40.603Z
Link: CVE-2023-30516
Updated: 2024-08-02T14:28:51.096Z
Status : Modified
Published: 2023-04-12T18:15:09.027
Modified: 2025-02-07T19:15:23.320
Link: CVE-2023-30516
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA