| id: GO-2024-3157 |
| modules: |
| - module: mellium.im/xmpp |
| versions: |
| - fixed: 0.22.0 |
| vulnerable_at: 0.21.4 |
| summary: Mellium allows Authentication Bypass by Spoofing in mellium.im/xmpp |
| cves: |
| - CVE-2024-46957 |
| ghsas: |
| - GHSA-98hf-m87w-cq6h |
| references: |
| - advisory: https://github.com/advisories/GHSA-98hf-m87w-cq6h |
| - advisory: https://nvd.nist.gov/vuln/detail/CVE-2024-46957 |
| - web: https://codeberg.org/mellium/xmpp/releases |
| - web: https://codeberg.org/mellium/xmpp/releases/tag/v0.22.0 |
| - web: https://mellium.im/cve/cve-2024-46957 |
| source: |
| id: GHSA-98hf-m87w-cq6h |
| created: 2024-09-26T14:13:29.228384-04:00 |
| review_status: UNREVIEWED |