CVE-2017-7192
06.04.2017, 14:59
WebSocket.swift in Starscream before 2.0.4 allows an SSL Pinning bypass because of incorrect management of the certValidated variable (it can be set to true but cannot be set to false).Enginsight
| Vendor | Product | Version |
|---|---|---|
| starscream_project | starscream | 𝑥 ≤ 2.0.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References