CVE-2020-27589

Severity CVSS v4.0:
Pending analysis
Type:
CWE-295 Improper Certificate Validation
Publication date:
06/11/2020
Last modified:
20/11/2020

Description

Synopsys hub-rest-api-python (aka blackduck on PyPI) version 0.0.25 - 0.0.52 does not validate SSL certificates in certain cases.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:synopsys:hub-rest-api-python:*:*:*:*:*:*:*:* 0.0.25 (including) 0.0.52 (including)