CVE-2010-4237
Mercurial before 1.6.4 fails to verify the Common Name field of SSL certificates which allows remote attackers who acqui
Mercurial before 1.6.4 fails to verify the Common Name field of SSL certificates which allows remote attackers who acquire a certificate signed by a Certificate Authority to perform a man-in-the-middle attack.
MEDIUM · CVSS 5.9
EPSS 0.00307
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0