CVE-2024-46957
EUVD-2024-275725.09.2024, 01:15
Mellium mellium.im/xmpp 0.0.1 through 0.21.4 allows response spoofing if the implementation uses predictable IDs because the stanza type is not checked. This is fixed in 0.22.0.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| mellium | xmpp | 0.0.1 ≤ 𝑥 ≤ 0.21.4 | ADP |
Common Weakness Enumeration