CVE-2020-24392
19.02.2021, 23:15
In voloko twitter-stream 0.1.10, missing TLS hostname validation allows an attacker to perform a man-in-the-middle attack against users of the library (because eventmachine is misused).Enginsight
| Vendor | Product | Version |
|---|---|---|
| twitter-stream_project | twitter-stream | 0.1.10 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration