The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation34 reference(s) from NVD