vulnerability
Alpine Linux: CVE-2021-22939: Improper Certificate Validation
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:N/AC:L/Au:N/C:N/I:P/A:N) | Aug 16, 2021 | Mar 26, 2024 | Oct 2, 2024 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
Aug 16, 2021
Added
Mar 26, 2024
Modified
Oct 2, 2024
Description
If the Node.js https API was used incorrectly and "undefined" was in passed for the "rejectUnauthorized" parameter, no error was returned and connections to servers with an expired certificate would have been accepted.
Solution(s)
alpine-linux-upgrade-nodejsalpine-linux-upgrade-nodejs-current

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.