CVE-2019-16561

Improper Certificate Validation in maven/org.jenkins-ci.plugins/websphere-deployer

Identifiers

GHSA-46rr-87h4-f5q6, CVE-2019-16561

Package Slug

maven/org.jenkins-ci.plugins/websphere-deployer

Vulnerability

Improper Certificate Validation

Description

Jenkins WebSphere Deployer Plugin 1.6.1 and earlier allows users with Overall/Read access to disable SSL/TLS certificate and hostname validation for the entire Jenkins master JVM.

Affected Versions

All versions up to 1.6.1

Solution

Unfortunately, there is no solution available yet.

Last Modified

2024-01-31

source