ZeroHour

CVE-2023-31486

CVSS 3.1
8.1 high
EPSS
2%p76
Published
()
Modified
Description

HTTP::Tiny before 0.083, a Perl core module since 5.13.9 and available standalone on CPAN, has an insecure default TLS configuration where users must opt in to verify certificates.

Vendors
http\perl
Products
\, perl
Weakness
CWE-295
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.