In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade devsecops-engine-tools
to version 1.56.1 or higher.
devsecops-engine-tools is a Tool for DevSecOps strategy
Affected versions of this package are vulnerable to Improper Certificate Validation via the get_access_token_client_credentials
function, which uses the requests.request()
function with verify=False
configured.