Missing SSL Certificate Validation in LocalStack by LocalStack
CVE-2023-48054
7.4HIGH
What is CVE-2023-48054?
The lack of SSL certificate validation in LocalStack version 2.3.2 exposes users to significant security risks, enabling attackers to intercept and monitor communications between the host and server. This vulnerability can lead to unauthorized data access and manipulation through potential man-in-the-middle attacks, posing threats to data confidentiality and integrity.
