CVE-2023-31484
CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS.
CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS.
HIGH · CVSS 8.1
EPSS 0.01523
Act now
- Public exploit or PoC is available
- CVSS base score ≥ 7.0
Sigma rules2
YARA rules0