Total vulnerabilities in the database
http/impl/client/HttpClientBuilder.java in Apache HttpClient 4.3.x before 4.3.1 does not ensure that X509HostnameVerifier is not null, which allows attackers to have unspecified impact via vectors involving hostname verification.
Software | From | Fixed in |
---|---|---|
apache / httpclient | 4.3-beta1 | 4.3-beta1.x |
apache / httpclient | 4.3 | 4.3.x |
apache / httpclient | 4.3-beta2 | 4.3-beta2.x |
apache / httpclient | 4.3-alpha1 | 4.3-alpha1.x |
![]() |
4.3 | 4.3.1 |