CVE-2020-24715: Scalyr Agent
Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.
The Scalyr Agent before 2.1.10 has Missing SSL Certificate Validation because, in some circumstances, native Python code is used that lacks a comparison of the hostname to commonName and subjectAltName.
Affected products
- Scalyr Scalyr Agent: before 2.1.10 (fixed in 2.1.10)
Published 2020-08-27. Last modified 2026-06-17.