CVE-2024-35061: NASA AIT-Core uses unencrypted channels to exchange data over the network
(updated )
NASA AIT-Core v2.5.2 was discovered to use unencrypted channels to exchange data over the network, allowing attackers to execute a man-in-the-middle attack.
References
Detect and mitigate CVE-2024-35061 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →