CVE Published: 04/07/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: redhat |
Vendor: Red Hat |
Product: Red Hat build of Quarkus 2.13.8.Final Status : PUBLISHED
CVE-2023-2974 Description
A vulnerability was found in quarkus-core. This vulnerability occurs because the TLS protocol configured with quarkus.http.ssl.protocols is not enforced, and the client can force the selection of the weaker supported TLS protocol.