QID 982735
QID 982735: Python (pip) Security Update for blackduck (GHSA-f248-v4qh-x2r6)
Synopsys hub-rest-api-python (aka blackduck on PyPI) version 0.0.25 - 0.0.52 does not validate SSL certificates in certain cases.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-f248-v4qh-x2r6 for updates pertaining to this vulnerability.
Vendor References
- GHSA-f248-v4qh-x2r6 -
github.com/advisories/GHSA-f248-v4qh-x2r6
CVEs related to QID 982735
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-f248-v4qh-x2r6 | blackduck |
|