[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2022-23491":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T02:55:30.529Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":341,"aliases":342,"duplicate_of":9,"upstream":345,"downstream":346,"duplicates":367,"related":368,"reserved_at":9,"published_at":375,"modified_at":376,"state":377,"summary":378,"references_raw":387,"kevs":429,"epss":430,"epss_history":433,"metrics":700,"affected":717},"CVE-2022-23491","Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi 2022.12.07 removes root certificates from \"TrustCor\" from the root store. These are in the process of being removed from Mozilla's trust store. TrustCor's root certificates are being removed pursuant to an investigation prompted by media reporting that TrustCor's ownership also operated a business that produced spyware. Conclusions of Mozilla's investigation can be found in the linked google group discussion.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-345","Insufficient Verification of Data Authenticity","The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.","weakness","Draft","Class",[19,23,76,88,109,113,117,121,125,129,133,337],{"id":20,"name":21,"techniques":22},"CAPEC-111","JSON Hijacking (aka JavaScript Hijacking)",[],{"id":24,"name":25,"techniques":26},"CAPEC-141","Cache Poisoning",[27],{"id":28,"name":29,"tactics":30,"countermeasures":37},"T1557.002","ARP Cache Poisoning",[31,34],{"id":32,"name":33},"TA0031","Credential Access",{"id":35,"name":36},"TA0100","Collection",[38,43,47,51,55,59,63,67,71],{"id":39,"name":40,"tactic":41},"D3-UGLPA","User Geolocation Logon Pattern Analysis",{"name":42},"Detect",{"id":44,"name":45,"tactic":46},"D3-PMAD","Protocol Metadata Anomaly Detection",{"name":42},{"id":48,"name":49,"tactic":50},"D3-CSPP","Client-server Payload Profiling",{"name":42},{"id":52,"name":53,"tactic":54},"D3-PHDURA","Per Host Download-Upload Ratio Analysis",{"name":42},{"id":56,"name":57,"tactic":58},"D3-NTSA","Network Traffic Signature Analysis",{"name":42},{"id":60,"name":61,"tactic":62},"D3-APCA","Application Protocol Command Analysis",{"name":42},{"id":64,"name":65,"tactic":66},"D3-NTCD","Network Traffic Community Deviation",{"name":42},{"id":68,"name":69,"tactic":70},"D3-RTSD","Remote Terminal Session Detection",{"name":42},{"id":72,"name":73,"tactic":74},"D3-NTF","Network Traffic Filtering",{"name":75},"Isolate",{"id":77,"name":78,"techniques":79},"CAPEC-142","DNS Cache Poisoning",[80],{"id":81,"name":82,"tactics":83,"countermeasures":87},"T1584.002","DNS Server",[84],{"id":85,"name":86},"TA0042","Resource Development",[],{"id":89,"name":90,"techniques":91},"CAPEC-148","Content Spoofing",[92],{"id":93,"name":94,"tactics":95,"countermeasures":99},"T1491","Defacement",[96],{"id":97,"name":98},"TA0105","Impact",[100,105],{"id":101,"name":102,"tactic":103},"D3-DNR","Decoy Network Resource",{"name":104},"Deceive",{"id":106,"name":107,"tactic":108},"D3-NRAM","Network Resource Access Mediation",{"name":75},{"id":110,"name":111,"techniques":112},"CAPEC-218","Spoofing of UDDI/ebXML Messages",[],{"id":114,"name":115,"techniques":116},"CAPEC-384","Application API Message Manipulation via Man-in-the-Middle",[],{"id":118,"name":119,"techniques":120},"CAPEC-385","Transaction or Event Tampering via Application API Manipulation",[],{"id":122,"name":123,"techniques":124},"CAPEC-386","Application API Navigation Remapping",[],{"id":126,"name":127,"techniques":128},"CAPEC-387","Navigation Remapping To Propagate Malicious Content",[],{"id":130,"name":131,"techniques":132},"CAPEC-388","Application API Button Hijacking",[],{"id":134,"name":135,"techniques":136},"CAPEC-665","Exploitation of Thunderbolt Protection Flaws",[137,173,213],{"id":138,"name":139,"tactics":140,"countermeasures":147},"T1211","Exploitation for Stealth",[141,144],{"id":142,"name":143},"TA0030","Defense Evasion",{"id":145,"name":146},"TA0005","Stealth",[148,152,156,160,165,169],{"id":149,"name":150,"tactic":151},"D3-MBT","Memory Boundary Tracking",{"name":42},{"id":153,"name":154,"tactic":155},"D3-PCSV","Process Code Segment Verification",{"name":42},{"id":157,"name":158,"tactic":159},"D3-SSC","Shadow Stack Comparisons",{"name":42},{"id":161,"name":162,"tactic":163},"D3-PSEP","Process Segment Execution Prevention",{"name":164},"Harden",{"id":166,"name":167,"tactic":168},"D3-SAOR","Segment Address Offset Randomization",{"name":164},{"id":170,"name":171,"tactic":172},"D3-SFCV","Stack Frame Canary Validation",{"name":164},{"id":174,"name":175,"tactics":176,"countermeasures":182},"T1542.002","Component Firmware",[177,178,179],{"id":142,"name":143},{"id":145,"name":146},{"id":180,"name":181},"TA0110","Persistence",[183,188,192,196,200,204,208],{"id":184,"name":185,"tactic":186},"D3-SWI","Software Inventory",{"name":187},"Model",{"id":189,"name":190,"tactic":191},"D3-AVE","Asset Vulnerability Enumeration",{"name":187},{"id":193,"name":194,"tactic":195},"D3-FEMC","Firmware Embedded Monitoring Code",{"name":42},{"id":197,"name":198,"tactic":199},"D3-FV","Firmware Verification",{"name":42},{"id":201,"name":202,"tactic":203},"D3-FBA","Firmware Behavior Analysis",{"name":42},{"id":205,"name":206,"tactic":207},"D3-SU","Software Update",{"name":164},{"id":209,"name":210,"tactic":211},"D3-RS","Restore Software",{"name":212},"Restore",{"id":214,"name":215,"tactics":216,"countermeasures":223},"T1556","Modify Authentication Process",[217,218,221,222],{"id":142,"name":143},{"id":219,"name":220},"TA0112","Defense Impairment",{"id":180,"name":181},{"id":32,"name":33},[224,228,232,236,240,244,248,252,256,260,265,269,273,277,281,285,289,293,297,301,305,309,313,317,321,325,329,333],{"id":225,"name":226,"tactic":227},"D3-CI","Configuration Inventory",{"name":187},{"id":229,"name":230,"tactic":231},"D3-NTPM","Network Traffic Policy Mapping",{"name":187},{"id":233,"name":234,"tactic":235},"D3-AM","Access Modeling",{"name":187},{"id":237,"name":238,"tactic":239},"D3-FA","File Analysis",{"name":42},{"id":241,"name":242,"tactic":243},"D3-FIM","File Integrity Monitoring",{"name":42},{"id":245,"name":246,"tactic":247},"D3-PLA","Process Lineage Analysis",{"name":42},{"id":249,"name":250,"tactic":251},"D3-PSMD","Process Self-Modification Detection",{"name":42},{"id":253,"name":254,"tactic":255},"D3-PSA","Process Spawn Analysis",{"name":42},{"id":257,"name":258,"tactic":259},"D3-SFA","System File Analysis",{"name":42},{"id":261,"name":262,"tactic":263},"D3-FEV","File Eviction",{"name":264},"Evict",{"id":266,"name":267,"tactic":268},"D3-PT","Process Termination",{"name":264},{"id":270,"name":271,"tactic":272},"D3-PS","Process Suspension",{"name":264},{"id":274,"name":275,"tactic":276},"D3-HR","Host Reboot",{"name":264},{"id":278,"name":279,"tactic":280},"D3-HS","Host Shutdown",{"name":264},{"id":282,"name":283,"tactic":284},"D3-DF","Decoy File",{"name":104},{"id":286,"name":287,"tactic":288},"D3-FE","File Encryption",{"name":164},{"id":290,"name":291,"tactic":292},"D3-RF","Restore File",{"name":212},{"id":294,"name":295,"tactic":296},"D3-RC","Restore Configuration",{"name":212},{"id":298,"name":299,"tactic":300},"D3-CF","Content Filtering",{"name":75},{"id":302,"name":303,"tactic":304},"D3-LFP","Local File Permissions",{"name":75},{"id":306,"name":307,"tactic":308},"D3-RFAM","Remote File Access Mediation",{"name":75},{"id":310,"name":311,"tactic":312},"D3-CQ","Content Quarantine",{"name":75},{"id":314,"name":315,"tactic":316},"D3-CM","Content Modification",{"name":75},{"id":318,"name":319,"tactic":320},"D3-KBPI","Kernel-based Process Isolation",{"name":75},{"id":322,"name":323,"tactic":324},"D3-SCF","System Call Filtering",{"name":75},{"id":326,"name":327,"tactic":328},"D3-HBPI","Hardware-based Process Isolation",{"name":75},{"id":330,"name":331,"tactic":332},"D3-ABPI","Application-based Process Isolation",{"name":75},{"id":334,"name":335,"tactic":336},"D3-WSAM","Web Session Access Mediation",{"name":75},{"id":338,"name":339,"techniques":340},"CAPEC-701","Browser in the Middle (BiTM)",[],[],[343,344],"GHSA-43fp-rhv2-5gv8","PYSEC-2022-42986",[],[347,349,351,353,355,357,359,361,363,365],{"_key":348},"SUSE-SU-2023:0118-1",{"_key":350},"SUSE-SU-2023:0139-1",{"_key":352},"UBUNTU-CVE-2022-23491",{"_key":354},"SUSE-SU-2023:0119-1",{"_key":356},"SUSE-SU-2023:0130-1",{"_key":358},"OPENSUSE-SU-2024:13237-1",{"_key":360},"RHBA-2023:0589",{"_key":362},"MGASA-2023-0140",{"_key":364},"DEBIAN-CVE-2022-23491",{"_key":366},"RHSA-2025:9775",[],[369,370,371,372,373,374],{"_key":348},{"_key":350},{"_key":354},{"_key":356},{"_key":358},{"_key":362},"2022-12-07T21:15:53.804Z","2025-04-23T16:31:36.080Z","Analyzed",{"cisa_kev":379,"cisa_ransomware":379,"cisa_vendor":9,"epss_severity":380,"epss_score":381,"severity":382,"severity_score":383,"severity_version":384,"severity_source":385,"severity_vector":386,"severity_status":377},false,"low",0.00067,"high",7.5,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",[388,398,404,408,412,416,421,425],{"url":389,"sources":390,"tags":393},"https://github.com/certifi/python-certifi/security/advisories/GHSA-43fp-rhv2-5gv8",[391,385,392],"cve.org","osv_pypi",[394,395,396,397],"X Refsource CONFIRM","Third Party Advisory","WEB","Advisory",{"url":399,"sources":400,"tags":401},"https://groups.google.com/a/mozilla.org/g/dev-security-policy/c/oxX69KFvsm4/m/yLohoVqtCgAJ",[391,385,392],[402,403,395,396],"X Refsource MISC","Mailing List",{"url":405,"sources":406,"tags":407},"https://security.netapp.com/advisory/ntap-20230223-0010/",[391,385],[395],{"url":409,"sources":410,"tags":411},"https://nvd.nist.gov/vuln/detail/CVE-2022-23491",[392],[397],{"url":413,"sources":414,"tags":415},"https://github.com/certifi/python-certifi/commit/9e9e840925d7b8e76c76fdac1fab7e6e88c1c3b8",[392],[396],{"url":417,"sources":418,"tags":419},"https://github.com/certifi/python-certifi",[392],[420],"PACKAGE",{"url":422,"sources":423,"tags":424},"https://github.com/pypa/advisory-database/tree/main/vulns/certifi/PYSEC-2022-42986.yaml",[392],[396],{"url":426,"sources":427,"tags":428},"https://security.netapp.com/advisory/ntap-20230223-0010",[392],[396],[],{"date":431,"score":381,"percentile":432},"2026-06-04",0.20848,[434,438,441,444,447,450,453,456,459,462,465,468,470,472,475,479,482,485,487,490,493,495,498,501,504,506,509,512,515,518,521,524,527,530,533,535,538,541,544,547,550,553,556,559,562,565,568,571,574,577,580,583,587,590,593,596,599,602,605,608,611,614,617,620,623,626,629,632,635,638,641,644,647,650,653,656,659,662,665,668,671,674,677,680,683,686,689,692,695,697],{"date":435,"score":436,"percentile":437},"2025-11-04",0.00044,0.13117,{"date":439,"score":436,"percentile":440},"2025-11-05",0.13147,{"date":442,"score":436,"percentile":443},"2025-11-06",0.13237,{"date":445,"score":436,"percentile":446},"2025-11-07",0.1325,{"date":448,"score":436,"percentile":449},"2025-11-08",0.13252,{"date":451,"score":436,"percentile":452},"2025-11-09",0.13225,{"date":454,"score":436,"percentile":455},"2025-11-10",0.13191,{"date":457,"score":436,"percentile":458},"2025-11-11",0.13207,{"date":460,"score":436,"percentile":461},"2025-11-12",0.13176,{"date":463,"score":436,"percentile":464},"2025-11-13",0.13201,{"date":466,"score":436,"percentile":467},"2025-11-14",0.13222,{"date":469,"score":436,"percentile":458},"2025-11-15",{"date":471,"score":436,"percentile":464},"2025-11-16",{"date":473,"score":436,"percentile":474},"2025-11-17",0.13178,{"date":476,"score":477,"percentile":478},"2025-11-18",0.00097,0.23052,{"date":480,"score":477,"percentile":481},"2025-11-19",0.23061,{"date":483,"score":477,"percentile":484},"2025-11-20",0.23064,{"date":486,"score":436,"percentile":458},"2025-11-21",{"date":488,"score":436,"percentile":489},"2025-11-22",0.13212,{"date":491,"score":436,"percentile":492},"2025-11-23",0.13188,{"date":494,"score":436,"percentile":440},"2025-11-24",{"date":496,"score":436,"percentile":497},"2025-11-25",0.13145,{"date":499,"score":436,"percentile":500},"2025-11-26",0.13137,{"date":502,"score":436,"percentile":503},"2025-11-27",0.1314,{"date":505,"score":436,"percentile":437},"2025-11-28",{"date":507,"score":436,"percentile":508},"2025-11-29",0.13088,{"date":510,"score":436,"percentile":511},"2025-11-30",0.13095,{"date":513,"score":436,"percentile":514},"2025-12-01",0.13132,{"date":516,"score":436,"percentile":517},"2025-12-02",0.13148,{"date":519,"score":436,"percentile":520},"2025-12-03",0.13168,{"date":522,"score":436,"percentile":523},"2025-12-04",0.13143,{"date":525,"score":436,"percentile":526},"2025-12-05",0.13213,{"date":528,"score":436,"percentile":529},"2025-12-06",0.13221,{"date":531,"score":436,"percentile":532},"2025-12-07",0.13204,{"date":534,"score":436,"percentile":489},"2025-12-08",{"date":536,"score":436,"percentile":537},"2025-12-09",0.13276,{"date":539,"score":436,"percentile":540},"2025-12-10",0.13348,{"date":542,"score":436,"percentile":543},"2025-12-11",0.13382,{"date":545,"score":436,"percentile":546},"2025-12-12",0.13431,{"date":548,"score":436,"percentile":549},"2025-12-13",0.13455,{"date":551,"score":436,"percentile":552},"2025-12-14",0.13433,{"date":554,"score":436,"percentile":555},"2025-12-15",0.13401,{"date":557,"score":436,"percentile":558},"2025-12-16",0.13406,{"date":560,"score":436,"percentile":561},"2025-12-17",0.13505,{"date":563,"score":436,"percentile":564},"2025-12-18",0.13565,{"date":566,"score":436,"percentile":567},"2025-12-19",0.13617,{"date":569,"score":436,"percentile":570},"2025-12-20",0.13609,{"date":572,"score":436,"percentile":573},"2025-12-21",0.1357,{"date":575,"score":436,"percentile":576},"2025-12-22",0.13521,{"date":578,"score":436,"percentile":579},"2025-12-23",0.1352,{"date":581,"score":436,"percentile":582},"2025-12-24",0.13518,{"date":584,"score":585,"percentile":586},"2025-12-25",0.00051,0.16108,{"date":588,"score":585,"percentile":589},"2025-12-26",0.16099,{"date":591,"score":585,"percentile":592},"2025-12-27",0.16109,{"date":594,"score":585,"percentile":595},"2025-12-28",0.16065,{"date":597,"score":585,"percentile":598},"2025-12-29",0.16034,{"date":600,"score":585,"percentile":601},"2025-12-30",0.16048,{"date":603,"score":585,"percentile":604},"2025-12-31",0.16114,{"date":606,"score":585,"percentile":607},"2026-01-01",0.16216,{"date":609,"score":585,"percentile":610},"2026-01-02",0.16209,{"date":612,"score":585,"percentile":613},"2026-01-03",0.16189,{"date":615,"score":585,"percentile":616},"2026-01-04",0.16088,{"date":618,"score":585,"percentile":619},"2026-01-05",0.16046,{"date":621,"score":585,"percentile":622},"2026-01-06",0.16061,{"date":624,"score":585,"percentile":625},"2026-01-07",0.16102,{"date":627,"score":585,"percentile":628},"2026-01-08",0.16163,{"date":630,"score":585,"percentile":631},"2026-01-09",0.16174,{"date":633,"score":585,"percentile":634},"2026-01-10",0.16191,{"date":636,"score":585,"percentile":637},"2026-01-11",0.16153,{"date":639,"score":585,"percentile":640},"2026-01-12",0.16119,{"date":642,"score":585,"percentile":643},"2026-01-13",0.16105,{"date":645,"score":585,"percentile":646},"2026-01-14",0.16162,{"date":648,"score":585,"percentile":649},"2026-01-15",0.16171,{"date":651,"score":585,"percentile":652},"2026-01-16",0.16214,{"date":654,"score":585,"percentile":655},"2026-01-17",0.16231,{"date":657,"score":585,"percentile":658},"2026-01-18",0.16179,{"date":660,"score":585,"percentile":661},"2026-01-19",0.16125,{"date":663,"score":585,"percentile":664},"2026-01-20",0.16095,{"date":666,"score":585,"percentile":667},"2026-01-21",0.16073,{"date":669,"score":585,"percentile":670},"2026-01-22",0.15999,{"date":672,"score":585,"percentile":673},"2026-01-23",0.16079,{"date":675,"score":585,"percentile":676},"2026-01-24",0.16115,{"date":678,"score":585,"percentile":679},"2026-01-25",0.16041,{"date":681,"score":585,"percentile":682},"2026-01-26",0.15934,{"date":684,"score":585,"percentile":685},"2026-01-27",0.15927,{"date":687,"score":585,"percentile":688},"2026-01-28",0.15935,{"date":690,"score":585,"percentile":691},"2026-01-29",0.15905,{"date":693,"score":585,"percentile":694},"2026-01-30",0.15909,{"date":696,"score":585,"percentile":688},"2026-01-31",{"date":698,"score":585,"percentile":699},"2026-02-01",0.15954,[701,708,713],{"source":391,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":702,"cvss_v4_0":9},{"baseScore":703,"baseSeverity":704,"vectorString":705,"impactScore":706,"exploitabilityScore":707},6.8,"MEDIUM","CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:N",6.7,5.9,{"source":385,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":709,"cvss_v4_0":9},{"baseScore":383,"baseSeverity":710,"vectorString":386,"impactScore":711,"exploitabilityScore":712},"HIGH",6,10,{"source":392,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":714,"cvss_v4_0":715},{"baseScore":703,"baseSeverity":9,"vectorString":705,"impactScore":706,"exploitabilityScore":707},{"baseScore":707,"baseSeverity":9,"vectorString":716,"impactScore":9,"exploitabilityScore":9},"CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N",[718,730,736,743,748,753],{"ecosystem":9,"name":719,"vendor":719,"product":719,"cpe_part":720,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":721},"certifi","a",[722],{"version":723,"is_range":724,"range_type":725,"version_start":726,"version_start_type":727,"version_end":728,"version_end_type":729,"fixed_in":9},"gte2017.11.5_lt2022.12.7",true,"cpe","2017.11.5","including","2022.12.7","excluding",{"ecosystem":9,"name":731,"vendor":719,"product":731,"cpe_part":720,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":732},"python-certifi",[733],{"version":734,"is_range":724,"range_type":391,"version_start":9,"version_start_type":9,"version_end":735,"version_end_type":729,"fixed_in":9},"\u003C 2022.12.07","2022.12.07",{"ecosystem":9,"name":737,"vendor":738,"product":739,"cpe_part":720,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":740},"e-series performance analyzer","netapp","e-series_performance_analyzer",[741],{"version":742,"is_range":379,"range_type":725,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"na",{"ecosystem":9,"name":744,"vendor":738,"product":745,"cpe_part":720,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":746},"management services for element software","management_services_for_element_software",[747],{"version":742,"is_range":379,"range_type":725,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":749,"vendor":738,"product":750,"cpe_part":720,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":751},"management services for netapp hci","management_services_for_netapp_hci",[752],{"version":742,"is_range":379,"range_type":725,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":754,"name":719,"vendor":754,"product":719,"cpe_part":9,"purl_type":755,"purl_namespace":9,"purl_name":719,"source":9,"versions":756},"PyPI","pypi",[757,761],{"version":758,"is_range":724,"range_type":759,"version_start":760,"version_start_type":727,"version_end":735,"version_end_type":729,"fixed_in":9},"gte2017_11_05_lt2022_12_07","ecosystem","2017.11.05",{"version":762,"is_range":724,"range_type":759,"version_start":726,"version_start_type":727,"version_end":728,"version_end_type":729,"fixed_in":9},"gte2017_11_5_lt2022_12_7"]