Site icon API Security Blog

K000141052: Perl vulnerability CVE-2023-31484

Security Advisory Description CPAN_._pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS. (CVE-2023-31484) Impact This vulnerability may allow an attacker to inject into the network path and perform a man-in-the-middle (MITM) attack, causing confidentiality or integrity…Read More

Exit mobile version