Vulnerabilities > Puppet > Puppet Server > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-05-04 CVE-2023-1894 Unspecified vulnerability in Puppet Enterprise and Puppet Server
A Regular Expression Denial of Service (ReDoS) issue was discovered in Puppet Server 7.9.2 certificate validation.
network
low complexity
puppet
5.3
2019-12-16 CVE-2018-11751 Improper Certificate Validation vulnerability in Puppet Server
Previous versions of Puppet Agent didn't verify the peer in the SSL connection prior to downloading the CRL.
low complexity
puppet CWE-295
5.4