Home

Description

An issue pertaining to CWE-295: Improper Certificate Validation was discovered in jxcore jxm master. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in HTTPS request options when 'jx_obj.IsSecure' is true

PUBLISHED Reserved 2026-01-09 | Published 2026-02-23 | Updated 2026-02-23 | Assigner mitre

References

github.com/jxcore

github.com/jxcore/jxm

gist.github.com/...ghthouse/bd5852a409c97438016f2c476f8461d9

cve.org (CVE-2025-70045)

nvd.nist.gov (CVE-2025-70045)

Download JSON