Loading
In Eclipse Jersey versions 2.45, 3.0.16, 3.1.9 a race condition can cause ignoring of critical SSL configurations - such as mutual authentication, custom key/trust stores, and other security settings. This issue may result in SSLHandshakeException under normal circumstances, but under certain conditions, it could lead to unauthorized trust in insecure servers (see PoC)
Use CWE-362, Eclipse vendor hub and Jersey product page to widen CVE-2025-12383 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-28168 for nearby disclosures in the same product family.