Vulnerability Details CVE-2023-35142
Jenkins Checkmarx Plugin 2022.4.3 and earlier disables SSL/TLS validation for connections to the Checkmarx server by default.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 15.5%
CVSS Severity
CVSS v3 Score 8.1
Products affected by CVE-2023-35142
-
cpe:2.3:a:jenkins:checkmarx:-
-
cpe:2.3:a:jenkins:checkmarx:2020.2.20
-
cpe:2.3:a:jenkins:checkmarx:2020.3.3
-
cpe:2.3:a:jenkins:checkmarx:2020.4.3
-
cpe:2.3:a:jenkins:checkmarx:2020.4.8
-
cpe:2.3:a:jenkins:checkmarx:2021.1.2
-
cpe:2.3:a:jenkins:checkmarx:2021.2.94
-
cpe:2.3:a:jenkins:checkmarx:2021.2.96
-
cpe:2.3:a:jenkins:checkmarx:2021.3.1
-
cpe:2.3:a:jenkins:checkmarx:2021.3.3
-
cpe:2.3:a:jenkins:checkmarx:2021.4.1
-
cpe:2.3:a:jenkins:checkmarx:2021.4.2
-
cpe:2.3:a:jenkins:checkmarx:2021.4.3
-
cpe:2.3:a:jenkins:checkmarx:2022.1.2
-
cpe:2.3:a:jenkins:checkmarx:2022.1.3
-
cpe:2.3:a:jenkins:checkmarx:2022.2.1
-
cpe:2.3:a:jenkins:checkmarx:2022.2.3
-
cpe:2.3:a:jenkins:checkmarx:2022.3.2
-
cpe:2.3:a:jenkins:checkmarx:2022.3.3
-
cpe:2.3:a:jenkins:checkmarx:2022.4.3
-
cpe:2.3:a:jenkins:checkmarx:2023.2.6
-
cpe:2.3:a:jenkins:checkmarx:7.5.0
-
cpe:2.3:a:jenkins:checkmarx:8.0.0
-
cpe:2.3:a:jenkins:checkmarx:8.0.1
-
cpe:2.3:a:jenkins:checkmarx:8.1.0-1
-
cpe:2.3:a:jenkins:checkmarx:8.1.0-2
-
cpe:2.3:a:jenkins:checkmarx:8.2.0
-
cpe:2.3:a:jenkins:checkmarx:8.41.0
-
cpe:2.3:a:jenkins:checkmarx:8.42.0
-
cpe:2.3:a:jenkins:checkmarx:8.5.0
-
cpe:2.3:a:jenkins:checkmarx:8.50.0
-
cpe:2.3:a:jenkins:checkmarx:8.60.0
-
cpe:2.3:a:jenkins:checkmarx:8.60.1
-
cpe:2.3:a:jenkins:checkmarx:8.70.0
-
cpe:2.3:a:jenkins:checkmarx:8.80.0
-
cpe:2.3:a:jenkins:checkmarx:8.80.3
-
cpe:2.3:a:jenkins:checkmarx:8.90.1
-
cpe:2.3:a:jenkins:checkmarx:8.90.3
-
cpe:2.3:a:jenkins:checkmarx:8.90.4