CVE-2020-24392
19.02.2021, 23:15
In voloko twitter-stream 0.1.10, missing TLS hostname validation allows an attacker to perform a man-in-the-middle attack against users of the library (because eventmachine is misused).Enginsight
Vendor | Product | Version |
---|---|---|
twitter-stream_project | twitter-stream | 0.1.10 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration