CVE Feed

    Dashboard / CVE / CVE-2024-39689

    CVE-2024-39689

    Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi starting in 2021.5.30 and prior to 2024.7.4 recognized root certificates from `GLOBALTRUST`. Certifi 2024.7.04 removes root certificates from `GLOBALTRUST` from the root store. These are in the process of being removed from Mozilla's trust store. `GLOBALTRUST`'s root certificates are being removed pursuant to an investigation which identified "long-running and unresolved compliance issues."

    Published:Jul 3, 2024
    Last Modified:Feb 15, 2025
    EPS:Jul 5, 2024
    EPSS Score:0.21233
    CVSS Score:7.5

    Affected Products

    Vendor
    Certifi
    Product
    Certifi
    Vendor
    Netapp
    Product
    Management Services For Element Software And Netapp Hci
    Vendor
    Netapp
    Product
    Ontap Select Deploy Administration Utility
    Vendor
    Netapp
    Product
    Ontap Tools

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High