CVE-2020-24715: Scalyr Agent

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

The Scalyr Agent before 2.1.10 has Missing SSL Certificate Validation because, in some circumstances, native Python code is used that lacks a comparison of the hostname to commonName and subjectAltName.

Affected products

  • Scalyr Scalyr Agent: before 2.1.10 (fixed in 2.1.10)

Published 2020-08-27. Last modified 2026-06-17.