blob: 06230dd47b03eec65ad7d449ab7316bd9da89c18 [file] [log] [blame]
id: GO-2024-3157
modules:
- module: mellium.im/xmpp
versions:
- fixed: 0.22.0
vulnerable_at: 0.21.4
summary: Mellium allows Authentication Bypass by Spoofing in mellium.im/xmpp
cves:
- CVE-2024-46957
ghsas:
- GHSA-98hf-m87w-cq6h
references:
- advisory: https://github.com/advisories/GHSA-98hf-m87w-cq6h
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2024-46957
- web: https://codeberg.org/mellium/xmpp/releases
- web: https://codeberg.org/mellium/xmpp/releases/tag/v0.22.0
- web: https://mellium.im/cve/cve-2024-46957
source:
id: GHSA-98hf-m87w-cq6h
created: 2024-09-26T14:13:29.228384-04:00
review_status: UNREVIEWED