Vulnerabilities > Synopsys > High

DATE CVE VULNERABILITY TITLE RISK
2020-11-06 CVE-2020-27589 Improper Certificate Validation vulnerability in Synopsys Hub-Rest-Api-Python
Synopsys hub-rest-api-python (aka blackduck on PyPI) version 0.0.25 - 0.0.52 does not validate SSL certificates in certain cases.
network
low complexity
synopsys CWE-295
7.5
2019-08-05 CVE-2019-3800 Information Exposure vulnerability in multiple products
CF CLI version prior to v6.45.0 (bosh release version 1.16.0) writes the client id and secret to its config file when the user authenticates with --client-credentials flag.
7.8