CVE Database
/

CVE-2023-30516

Back to search

CVE-2023-30516

Published: Apr 12, 2023

Modified: Feb 7, 2025

PUBLISHED

Description

Jenkins Image Tag Parameter Plugin 2.0 improperly introduces an option to opt out of SSL/TLS certificate validation when connecting to Docker registries, resulting in job configurations using Image Tag Parameters that were created before 2.0 having SSL/TLS certificate validation disabled by default.

VendorProductVersions

Jenkins Project

Jenkins Image Tag Parameter Plugin

affected
0 - <= 2.0

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now