Back to search
CVE-2023-30516
Published: Apr 12, 2023
Modified: Feb 7, 2025
PUBLISHED
Description
Jenkins Image Tag Parameter Plugin 2.0 improperly introduces an option to opt out of SSL/TLS certificate validation when connecting to Docker registries, resulting in job configurations using Image Tag Parameters that were created before 2.0 having SSL/TLS certificate validation disabled by default.
| Vendor | Product | Versions |
|---|---|---|
Jenkins Project | Jenkins Image Tag Parameter Plugin | affected 0 - <= 2.0 |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now