Executive brief
TUF (aka The Update Framework) through 0.12.1 has Improper Verification of a Cryptographic Signature.
Affected products
- PyPI tuf
Junglewise Threat Intelligence
CVE-2020-6174 · Severity: low · CVSS 3.1 · Published 2020-02-05
Technologies: tuf (PyPI). Vendors: PyPI.
TUF (aka The Update Framework) through 0.12.1 has Improper Verification of a Cryptographic Signature.