Vulnerabilities (CVE)

Filtered by vendor Eclipse Subscribe
Filtered by product Vorto
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-10248 1 Eclipse 1 Vorto 2023-12-10 6.8 MEDIUM 8.1 HIGH
Eclipse Vorto versions prior to 0.11 resolved Maven build artifacts for the Xtext project over HTTP instead of HTTPS. Any of these dependent artifacts could have been maliciously compromised by a MITM attack. Hence produced build artifacts of Vorto might be infected.