CVE-2020-13615: Qore
Medium severity, CVSS 5.9. EPSS: 0.7% chance of exploitation in the next 30 days.
lib/QoreSocket.cpp in Qore before 0.9.4.2 lacks hostname verification for X.509 certificates.
Affected products
- Qore Qore: before 0.9.4.2 (fixed in 0.9.4.2)
Published 2020-05-26. Last modified 2026-06-17.