Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34259
HistoryFeb 17, 2022 - 5:16 a.m.

DNS Spoofing

2022-02-1705:16:34
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18

0.001 Low

EPSS

Percentile

34.3%

mellium.im/xmpp is vulnerable to DNS spoofing. The vulnerability exists due to a lack of verification of the host name allowing an attacker to potentially deceive the user with a malicious DNS ID because the library does not properly verify TLS certification.