SSL certificate validation bypass in Synopsys hub-rest-api-python (blackduck on PyPI) versions 0.0.25 - 0.0.52

SSL certificate validation bypass in Synopsys hub-rest-api-python (blackduck on PyPI) versions 0.0.25 - 0.0.52

CVE-2020-27589 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Synopsys hub-rest-api-python (aka blackduck on PyPI) version 0.0.25 - 0.0.52 does not validate SSL certificates in certain cases.

Learn more about our Api Penetration Testing.