splunk-sdk is vulnerable to Inadequate Encryption Strength
50
Medium Risk
Affected versions of the package use insecure TLS 1.0 and TLS 1.1 protocols, which are vulnerable to man-in-the-middle attacks. This exposes data to potential interception and manipulation, compromising both confidentiality and integrity.
You are affected if you are using a version that falls within the vulnerable range.
splunk-sdk is vulnerable to Inadequate Encryption Strength in versions 1.0 - 2.0.2.
Upgrade the splunk-sdk library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant