Junglewise Threat Intelligence

CVE-2022-23649: GO-2022-0326 - Improper certificate validation in github.com/sigstore/cosign

CVE-2022-23649 · Severity: low · CVSS 3.1 · Published 2023-11-09

Technologies: github.com/sigstore/cosign (Go). Vendors: Go.

Executive brief

Improper certificate validation in github.com/sigstore/cosign

Affected products

  • Go github.com/sigstore/cosign

Related threats