Lucene search

K
broadcomBroadcom Security ResponseBSNSA22243
HistoryJun 12, 2023 - 12:00 a.m.

Certificate validation is disabled when requesting binaries

2023-06-1200:00:00
Broadcom Security Response
support.broadcom.com
86
certificate validation
node-sass
binaries
vulnerability
brocade fibre channel
broadcom
software

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

35.9%

Certificate validation in node-sass 2.0.0 to 4.14.1 is disabled when requesting binaries even if the user is not specifying an alternative download path.

Products Confirmed Not Affected

No Brocade Fibre Channel Products from Broadcom products are known to be affected by this vulnerability.

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

35.9%