Restkit allows man-in-the-middle attackers to spoof TLS servers by leveraging use of the ssl.wrap_socket function in Python with the default CERT_NONE value for the cert_reqs argument.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| restkit(PyPI) | 0 | N/A | N/A |
CVSS Metrics