CVE-2022-45197

7.5HIGH

Slixmpp before 1.8.3 lacks SSL Certificate hostname validation in XMLStream, allowing an attacker to pose as any server in the eyes of Slixmpp.

发布于: 12/25/2022更新于: 4/14/2025

描述

Slixmpp before 1.8.3 lacks SSL Certificate hostname validation in XMLStream, allowing an attacker to pose as any server in the eyes of Slixmpp.

AI分析AI驱动

受影响产品

slixmpp_projectslixmpp

参考资料